Your privacy is important to us.

What is the GDPR?

The General Data Protection Regulation, or “GDPR”, is Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016. The GDPR is a comprehensive privacy regulation that sets forth the rules for processing the personal data of individuals in the EU (“data subjects”) and the rights of data subjects with respect to their personal data. The GDPR became effective on May 25, 2018.

What is considered personal data?

Any information relating to an identified or identifiable natural person in the EU is considered personal data under GDPR. An identifiable person is one who can be identified directly or indirectly, particularly by reference to an identifier such as name, email address, identification number, or location, as well as online identifiers such as IP address.

The GDPR regulates the processing of personal data about individuals in the European Union and the European Economic Area including its collection, storage, transfer or use. Importantly, under the GDPR, the concept of “personal data” is very broad and covers any information relating to an identified or identifiable individual (also called a “data subject”).

It gives data subjects more rights and control over their data by regulating how companies should handle and store the personal data they collect. The GDPR also raises the stakes for compliance by increasing enforcement and imposing greater fines should the provisions of the GDPR be breached.

The GDPR enhances EU individuals’ privacy rights and places significantly enhanced obligations on organizations handling data.

In summary, here are some of the key changes that came into effect with the upcoming GDPR:

What has been InPlayer’s overall GDPR compliance plan?

Although it’s a complex piece of legislation, the general idea of GDPR is pretty simple; to make sure all data about private citizens is handled with the care it deserves. We’ve been working with privacy experts and our attorneys to be sure we’re compliant with the GDPR. The privacy and security of our clients and their users are of utmost importance to us.

If you are wondering what data JWDP UK Ltd., a wholly owned subsidiary of Longtail Ad Solutions, Inc. d/b/a/ JW Player (“InPlayer”) stores about you and how it is being handled and used, you can easily find that out from our data privacy reports.

Choose the one most relevant to your relationship with us:

If you want more visibility on how we share data with third parties – we’ve listed all data processors here.

There are dozens upon dozens of changes and steps we’re taking across every part of our company to ensure we are GDPR compliant. This includes anonymising more data, reducing the types of data shared across vendors to only the parts that are absolutely necessary and providing more controls over what data is/isn’t processed.

Here’s a high-level overview of what we’ve completed so far on our GDPR Compliance Roadmap:

Your data

Accountability and management

New rights

Consent and communication

Changes in our SaaS platform and new features

We are still researching the need for our clients to add age verification to their registration process through our paywall. As soon as our experts reach a conclusion on this we will develop a feature accordingly.

Exceptions due to being a money processor

InPlayer has anti-money laundering and financial regulatory obligations to retain records for certain periods, and we generally cannot delete transactional records prior to the expiration of those periods as we have statutory record-keeping obligations. Absent those specific requirements, we retain personal data for only as long as permissible under applicable data protection laws. InPlayer does retain personal data in compliance with applicable data protection laws, and additional sector-specific rules, as they may apply to InPlayer.

If you are a company outside the EU, this still affects you

The provisions of the GDPR apply to any organisation that processes personal data of individuals in the European Union, including tracking their online activities, regardless of whether the organisation has a physical presence in the EU.

If you have any questions, you may send them to

Last Revised: February 23, 2023