OK, so new regulations come in on 25th May regarding storing credit card info. We got a mail from HQ stating that if asked by a client we were to direct them to X for an answer. I got a query, forwarded to X who hadn't a Scooby, so he punted on to HQ who came back with this epic bit of bollocks:
[Company Name] has established a cross-functional team to assess and address the application of GDPR to our European and global operations. We are focused on the development and implementation of company-wide policies, procedures, contracts, and solutions to address GDPR requirements. We anticipate that our effort will involve updates to contractual terms governing client arrangements impacted by GDPR, and therefore expect to reach out to affected clients in due course with such terms.
We will be ready to answer more specific questions once we assess all applicable items for [co name] and we plan to provide further updates by end of May.
Thank you for your patience. Please let us know if you have any questions.
Compliance Office,