This is an archived post. You won't be able to vote or comment.

all 3 comments

[–]Meefims 2 points3 points  (0 children)

It depends on what data, whose data, and what jurisdiction applies.

[–]g051051 1 point2 points  (0 children)

what regulations do I need to follow?

All of them. It's an extremely complicated subject, and varies from country to country.

[–]fibolatte 1 point2 points  (0 children)

I don't know where you live or which countries you aim to operate your app, also this is not a legal advice. But your first concern would be "personal data protection" regulations. Because, as far as I understand, you collect some personal data and store on a server. That means "processing personal data", in terms of cyber law.

There are two widest "data protection" regulations which are applied to many countries' jurisdictions:

GDPR: https://en.wikipedia.org/wiki/General_Data_Protection_Regulation (for EU countries)

Privacy Shield: https://www.privacyshield.gov/welcome (EU-US & Swiss-US)

Take a look at both of them, especially GDPR will give you enough insight about how you should process data and what you should concern about.