Is there something similar for privacy statements that can be used by small blog owners to remain compliant with GDPR?
Assume the blog is hosted on a Digital Ocean virtual machine hosted in EU, runs on self-hosted Wordpress or another self-hosted free CMS with a built-in comment form. Assume it only writes Apache/Nginx access logs, does not have any analytics in the pages, no cookies, no tracker. Only user comments and access logs. Anything handy for such blogs?
The Schrems II ruling says it's not enough to have the data hosted in EU since DO is a US corp.
One trick I've seen people use is to move the discussion to a different forum, like posting the article to HN and having a link in the article saying "Discussion on Hacker News".