Here are five of the major OBLIGATIONS you will have in 2018 if you wish to store customer data. No wonder Wetherspoons have deleted their database and moved to social communications with their customers.
In December 2015, the European Parliament and Council agreed on a General Data Protection Regulation (GDPR) in order to update and harmonize data protection laws throughout the European Union, replacing the current EU legal framework in its entirety.
https://www.pwc.com/us/en/cybersecurity/broader-perspectives/operational-impacts-of-gdpr.html