惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

G
Google Developers Blog
博客园 - 三生石上(FineUI控件)
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
MongoDB | Blog
MongoDB | Blog
小众软件
小众软件
Y
Y Combinator Blog
博客园 - 聂微东
Google DeepMind News
Google DeepMind News
D
Docker
罗磊的独立博客
Microsoft Security Blog
Microsoft Security Blog
D
DataBreaches.Net
B
Blog
Vercel News
Vercel News
Recent Announcements
Recent Announcements
GbyAI
GbyAI
阮一峰的网络日志
阮一峰的网络日志
T
The Blog of Author Tim Ferriss
H
Hackread – Cybersecurity News, Data Breaches, AI and More
P
Proofpoint News Feed
酷 壳 – CoolShell
酷 壳 – CoolShell
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
Microsoft Azure Blog
Microsoft Azure Blog
宝玉的分享
宝玉的分享

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
DPO Newsletter: Global Data Protection & Privacy News (is...
Janeth Hassan · 2026-04-16 · via Compliance Solutions for Websites, Apps and Organizations | iubenda
DPO Newsletter: Global Data Protection & Privacy News

We’ve compiled the latest in Data Protection and Privacy news for your convenience below.

1) Newly Published Documentation

🇪🇺 European Union – EDPB Publishes 2025 Annual Report
The EDPB’s 2025 Annual Report says national DPAs issued a record €1.15 billion in fines last year. It also highlights the Helsinki Statement and the Board’s first joint DMA/GDPR guidance.

🇫🇷 France – CNIL Publishes HR Data Retention Guide
France’s CNIL published a practical guide (in French) on how long employers should keep HR data, covering recruitment, payroll, workplace accidents, disciplinary files, and more. It’s a useful reference for DPOs and HR teams working under French law.

🇬🇧 United Kingdom – ICO Opens Consultation on Automated Decision-Making Guidance
The ICO launched a consultation on updated guidance on automated decision-making and profiling, with feedback open until 29 May 2026. The draft matters for employers and any business using AI or algorithmic decision tools.

2) Notable Case Law

🇪🇺 European Union – CJEU Says a First GDPR Access Request Can Still Be Abusive
The CJEU ruled (PDF) that even a first access request can be refused if it is abusive and made mainly to build a damages claim, not to check whether data is being processed lawfully. The ruling also confirms that unjustified refusals can themselves create compensation risk.

🇮🇹 Italy – Garante Fines Intesa Sanpaolo €31.8 Million
Italy’s Garante fined Intesa Sanpaolo after finding that a single employee repeatedly accessed thousands of customers’ banking data over more than two years, while internal systems failed to detect it. The authority also criticized the bank’s late and incomplete breach notification in its decision (in Italian).

🇺🇸 United States – FTC Settles with OkCupid and Match Over Secret Data Sharing
The FTC announced a settlement with OkCupid and Match after finding that user photos, location data, and other personal data were shared with a third party despite privacy promises. The companies are now barred from misrepresenting their data-sharing practices.

3) New and Upcoming Legislation

🇪🇺 European Union – AI Act Omnibus Enters Negotiation Phase
The European Parliament adopted its position on the Digital Omnibus on AI, opening the way for interinstitutional negotiations. One key proposal is replacing the fixed August 2026 deadline for high-risk AI obligations with a standards-readiness trigger.

🇺🇸 United States – Oklahoma Enacts a Comprehensive State Privacy Law
Oklahoma signed SB 546 into law, becoming the 20th U.S. state to enact a comprehensive privacy law. It grants consumers rights to access, correct, delete, and opt out of certain processing, with enforcement led by the Attorney General.

4) Strong Impact Tech

🇪🇺 European Union – NOYB Signals More Collective Actions After Cyber Incidents
At the IAPP Global Summit, Max Schrems said in an IAPP discussion that NOYB’s new qualified-entity status could be used to bring collective actions, with cyber incidents and data breaches likely to be an early focus.

🇨🇭 Switzerland – Swiss Finance Minister Files Complaint Over Grok Output
Swiss Finance Minister Karin Keller-Sutter filed a criminal complaint after Grok generated abusive content about her, asking prosecutors to assess potential liability in the new report.

Other key information from the past weeks

🇪🇺🇺🇸 EU-U.S. Data Privacy Framework – Adoption Continues, but Legal Uncertainty Remains
At the IAPP Global Summit, speakers noted in an IAPP update that more companies are joining the DPF, while many larger businesses continue using SCCs in parallel as a safeguard.

🇪🇺 European Union – EDPB Launches 2026 Transparency Enforcement Action
The EDPB launched its 2026 coordinated enforcement action on GDPR transparency and information obligations, with 25 DPAs set to contact organizations across sectors and consolidate findings into a final report.

About us

iubenda

Attorney-level solutions to make your websites and apps compliant with the law across multiple countries and legislations.

www.iubenda.com