• Stop being a LURKER - join our dealer community and get involved. Sign up and start a conversation.

Reply to thread

I won't name any names, but let's just say I'm most curious to see how this impacts those vendors who are known for retrieving data for vendors.

Something as simple as exporting a CSV from Reynolds with customer data, transporting it to some sort of secure vault, then transferring that data again to a third-party vendor, who imports it into their system. Even if this entire process is automated and done via encrypted FTP or SSL protected APIs, there are still multiple points where the customer data is plain text.


Generally speaking, are customer list exports compliant at all?