It seems utterly beholden on our regulators to not only regulate, but to regulate clearly so that the 'reasonable person' has a chance in hell of abiding to-the-letter.
Why? I've seen most places (big and small) adopt a very simple page with one button on it asking if you want to opt in or out. Takes 5 seconds at most.
Too many 'smaller' and larger companies have gotten my details buy buying data from resellers, and then they have the gall to plead with me to let them keep mailing their crap?
I'm happy to opt-in to companies that I like doing business with.
Just like everywhere else, the (continuous) addition of regulations favors the larger, entrenched actors who can afford to deal with them. That's always the pernicious effect of too much regulatory load that states should be really aware of.
What's obvious is that many of them were ignoring the existing DPA and PECR law, and were slurping as much data as they wanted from a variety of sources, and sending marketing email to those contacts.
And now GDPR is coming in a lot of them have realised that they don't have a lawful basis for holding or processing that data, and certainly not for sending marketing to the contacts, and so they're cleaning their databases.
This is a feature, not a bug.
Companies that only held the data they needed; knew why they were holding it; and had correct permissions (if that was needed) are not having much problem with GDPR.
Did you miss the articles of EU based small projects shutting down operations? Also, do small web based tech companies even exist in Europe? When I look all I see are medium to large 90s era b2b tech companies.