Loading

Zandilli Lucien

Author: Zandilli Lucien
Page 11

The Importance of the GDPR in 2022: Continuous Regulatory Enforcement

The importance of the GDPR is not going away as we witness continuous regulatory enforcement through significant fines four years after the start of its application.    Since the GDPR’s inception in 2016 and its implementation in 2018, there have been concerns about its status and applicability. The General Data Protection Regulation or GDPR is

ICO urges developers to make privacy a priority

The ICO has recently released a statement urging developers to make privacy a priority early on in the implementation of new technologies.   In a recent statement, the UK’s data protection regulator, the ICO urges developers to make privacy a priority at an early stage of the implementation of new technologies. The Commissioner believes that

CNIL fines TikTok over cookie consent violations

TikTok was recently hit with a fine of 5 million euros from CNIL of France over cookie consent violations.   Following a series of investigations on the TikTok.com website between May 2020 and June 2022, TikTok has been hit with a €5 million fine for cookie consent violations. CNIL concluded that the refusal mechanism for

Personal data buyers must be disclosed to data subjects

The European Court of Justice has ruled that personal data buyers must be disclosed to data subjects. The European Court of Justice has ruled that companies must disclose buyers of personal data. This ruling follows the ICO’s Code of Practice on Data Sharing. Under this code, an organization that has shared personal data must provide

Cookie consent violations lead to a fine of 60 million euros for Microsoft

Microsoft was recently hit with a fine of 60 million euros from CNIL of France for various cookie consent violations.   Following several investigations into the company regarding cookies deposited via bing.com, CNIL has imposed a fine of €60 million on Microsoft. The investigations were spurred by complaints about the conditions for depositing cookies on

Previous Standard Contractual Clauses can no longer be used: CNIL issues reminder

CNIL of France recently issued a reminder that the previous Standard Contractual Clauses can no longer be used for the transfer of data outside of the EU. CNIL of France has recently issued a reminder that the old Standard Contractual Clauses (SCCs) can no longer be used, as of 27th December. Data exporters and importers

Adequacy decision for safe data flows with the U.S

European Union starts process to adopt adequacy decision for safe data flows with the U.S.   The European Commission has launched the process to enable continued data transfers from the European Union to the United States, which existed under the EU-U.S. Privacy Shield. In its decision, the European Commission has recognized that the United States

Electric company was fined by CNIL over commercial prospecting

French electric company EDF was fined by the CNIL for commercial prospecting and other GDPR violations.   The French electric company EDF has recently been fined a total of €600,000 after being found guilty of several GDPR violations. According to this report from the CNIL of France, the company was found guilty of commercial prospecting

Controller Binding Corporate Rules: New recommendations from the EDPB

The EDPB recently published Recommendations 1/2022 on the Application for Approval and on the elements and principles to be found in Controller Binding Corporate Rules.   The European Data Protection Board (EDPB) has recently adopted recommendations for the Controller Binding Corporate Rules (BCR-Cs) during their November plenary. The document includes recommendations on the Application for

Processor Code of Conduct published by LfDI of Baden-Württemberg, Germany

Baden-Württemberg DPA, LfDI has published a Processor Code of Conduct to aid data processors with self regulation.    The DPA of Baden-Württemberg, Germany has published a code of conduct for processors, providing more legal certainty with regard to data processing under the GDPR. Businesses and organisations within Germany and in general within the EU, who