Tag: EU

Tag: EU
Page 9

Employee right of access: how does it work?

The CNIL of France has released an article explaining the employee right of access under the EU GDPR.   Article 15 of the GDPR gives individuals the right to request a copy of any of their personal data from a data controller. This also applies when the data controller is the individual’s employer. CNIL has

International Data Protection Committee established by Danish DPA

An international data protection committee has been established by the Danish DPA to protect Danish interests regarding international data protection.   The Danish DPA has established a special committee with the aim of giving the Authority’s stakeholders more and better insight into the international data protection work done by the Data Inspectorate. It will also

DATA PROTECTION AND GDPR: LESSONS LEARNED FROM 2021

The data protection industry is constantly evolving as the GDPR is implemented by organisations and enforced by the Data Protection Authorities.    New year, new beginnings? That is not always the case, at least definitively not when the previous year has provided valuable insights for the upcoming one. Considering that the GDPR has been in

CLEARVIEW AI ordered to delete photos by French DPA; CNIL

CLEARVIEW AI, ordered to delete photos by the French DPA after investigation revealed unlawful collection and processing of photos from the Internet.   CLEARVIEW AI, and the facial recognition software the company produces were first reported to the CNIL in May of 2020. This led to an investigation which uncovered two GDPR infractions; the unlawful

Whatsapp privacy policy updated after record fine of €225 million

Whatsapp privacy policy has been updated after the company was hit with a GDPR fine, however, this changes nothing about their service.   Whatsapp has amended their privacy policy after being hit with a record fine for an EU GDPR violation. While the company is still appealing the €225 million fine, their privacy policy is

Poor personal data security by Dutch airline leads to a fine

Poor personal data security leads to a fine from the Dutch DPA, after security flaws cause a major hack.   An airline has recently been hit with a €400,000 fine from the Dutch DPA following a major hack, attributable to poor data security. The airline Transavia suffered a hack of two accounts in the company’s

Proposed Digital Markets Act to be enforced by the EU Commission

Proposed Digital Markets Act will be enforced exclusively by the European Commission, but what does it entail?   EU representatives have officially agreed that the European Commission will be the enforcer of the Digital Markets Act, which is set to be ratified on November 25 as part of the bloc’s common position ahead of negotiations

Monitoring data processors: guidance from Danish DPA

The Danish DPA has published guidance for data controllers on monitoring data processors, with suggestions based on risk assessment. The Danish DPA published guidance last month, for any private company, public authority or institution, processing personal data, or functioning as a data controller, on how to best monitor their data processors. These data processors are

Bulk email data breach results in a fine from the ICO

Bulk email data breach results in a fine from the ICO, as a data controller possibly revealed identities and assumable health status of recipients.   A recent data breach by a Scottish charity – HIV Scotland, has resulted in a fine from the ICO. A bulk email was sent out to 105 recipients which included

Facial recognition payment system launched in Moscow

Facial recognition payment system recently launched in Moscow is the first to be used on such a large scale.   Commuters in Moscow, Russia now have the option of using the new voluntary payment method called “Face Pay”. This method allows them to sign up by scanning their face in front of a camera at