About this site
This blog is written by Aaron Williamson, an independent technology lawyer at Williamson Legal. It provides provide useful information about data privacy compliance for small-to-medium businesses and nonprofits in the U.S.
As data privacy laws and regulations have become a growing concern for my clients, I've had to learn along with them. I've noticed that a lot of the compliance information online comes from compliance platform vendors, who often provide just enough information to frighten you toward their services. On the other end of the spectrum, large law firms with data privacy practices publish detailed analyses of legal developments, mostly targeted to practitioners.
Practical Privacy Compliance occupies the lonely middle ground: substantial guidance written for the people running companies and nonprofits. I cite my sources, but I try not to get so far into the legal weeds that you don't know what to do with the information.
And while I offer legal advice on privacy compliance through my law firm, there are no teasers on this blog: I aim to provide as much useful information as I can about the topics I write about, while keeping them applicable to a general audience.
If you have questions, corrections, or suggested topics for future posts, please feel free to reach out: aaron@williamson.legal.
Disclaimer
This blog is not legal advice, and I am not your lawyer (unless you happen to also be a client). While we aim for actionable guidance, data privacy laws are complex, and even small variations in facts can lead to different outcomes. I recommend using the information on this site to guide and focus your conversations with your own data privacy counsel.
Also, while I discuss GDPR extensively on the blog, I am neither licensed in the EU nor an expert on EU law and regulation.
Subscribe without fear
If you're interested in staying informed about new posts, subscribe here. I hate spam as much as you do—the subscription is all content, no ads or filler.