I can confirm that this site and its staff are most likely not in compliance with European law (GDPR) in several instances and when this is pointed out to them (which according to European law (GDPR again), does not even take a formal request or any specific type of wording - this to protect the consumer/end user) their response is silence, complete silence and ignoring it.
I would highly recommend anyone to increase the volume on this in any communication with BGA and also insist on whoever is replying from generic email addresses to identify themselves. A simple communication towards them (no matter the channel, i guess email would be the easiest.) mentioning a full request for personal data stored and e.g. who this was/is available to and who has accessed it should work nicely. Add GDPR to the wording (not even necessary, strictly speaking). This gives them a timeline of exactly 30 days from request to respond in full, otherwise they are officially breaching and non compliant with GDPR. Something they probably will want to avoid due to how European consumer law is not sth. companies should mess with...
Very disappointing from a simple customer service perspective and VERY QUESTIONABLE if not litigable from a GDPR standpoint.
Regards,
M3R
Case in point: I have effectively been locked out from all of BGA (except forums) for about a month now incl. not even being able to access my personal account & settings (incl. cancelation of premium et al). Instead some anonymous, unidentified person using a BGA official email has asked for personal identifiable information (PII) via said unauthenticated email channel (a most dubious practice, again under GDPR and other privacy laws), ridiculed my simple requests and otherwise all but ignored my valid concerns.
I would highly recommend anyone to increase the volume on this in any communication with BGA and also insist on whoever is replying from generic email addresses to identify themselves. A simple communication towards them (no matter the channel, i guess email would be the easiest.) mentioning a full request for personal data stored and e.g. who this was/is available to and who has accessed it should work nicely. Add GDPR to the wording (not even necessary, strictly speaking). This gives them a timeline of exactly 30 days from request to respond in full, otherwise they are officially breaching and non compliant with GDPR. Something they probably will want to avoid due to how European consumer law is not sth. companies should mess with...
Very disappointing from a simple customer service perspective and VERY QUESTIONABLE if not litigable from a GDPR standpoint.
Regards,
M3R
Case in point: I have effectively been locked out from all of BGA (except forums) for about a month now incl. not even being able to access my personal account & settings (incl. cancelation of premium et al). Instead some anonymous, unidentified person using a BGA official email has asked for personal identifiable information (PII) via said unauthenticated email channel (a most dubious practice, again under GDPR and other privacy laws), ridiculed my simple requests and otherwise all but ignored my valid concerns.