# How Data Protection Requirements Discourage Excessive Customer Data Hoarding

DevFeed: [How Data Protection Requirements Discourage Excessive Customer Data Hoarding](<https://devfeed.tech/articles/worth-reading-data-protection-for-dummies-10994.md>)

Original publisher: [Read original article](<https://blog.ipspace.net/2024/04/worth-reading-data-protection-dummies/>)

Published: 2024-04-20T04:35:00Z

Content type: opinion

Language: en

Sources: [ipSpace.net blog](<https://devfeed.tech/sources/ipspace-net-blog.md>)

Topics: [data](<https://devfeed.tech/topics/data.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [customer](<https://devfeed.tech/tags/customer.md>), [data](<https://devfeed.tech/tags/data.md>), [data-protection](<https://devfeed.tech/tags/data-protection.md>), [gdpr](<https://devfeed.tech/tags/gdpr.md>), [pci-dss](<https://devfeed.tech/tags/pci-dss.md>), [security](<https://devfeed.tech/tags/security.md>), [worth-reading](<https://devfeed.tech/tags/worth-reading.md>)

## AI overview

The article argues that data protection requirements such as PCI-DSS and GDPR primarily discourage companies from retaining excessive customer data by making data hoarding expensive, rather than directly making companies more secure.

## Source excerpt

Another lovely must-read rant from the cranky security professional. TL&DR: Data protection requirements like PCI-DSS aren't there to make companies more secure but to make it too expensive for them to hoard excessive customer data (see also: GDPR).