ICANN will not get a moratorium on GDPR compliance
Data Protection Authorities that ICANN rightly insisted on seeking guidance from, told ICANN exactly what the Noncommercial Stakeholders Group (NCSG) and the Internet Governance Project had been telling them all along.
They need to define in detail a specific purpose of WHOIS in order to determine if specific uses of the data are legitimate; their data retention period must be justified by that specific purpose; they need to be careful with the international data transfer; and their certification process for tiered access must also comply with data protection norms.
Source: ICANN will not get a moratorium on GDPR compliance – Internet Governance Project