惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

The GitHub Blog
The GitHub Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Microsoft Security Blog
Microsoft Security Blog
J
Java Code Geeks
S
SegmentFault 最新的问题
Apple Machine Learning Research
Apple Machine Learning Research
N
Netflix TechBlog - Medium
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园_首页
宝玉的分享
宝玉的分享
Google DeepMind News
Google DeepMind News
B
Blog RSS Feed
Hugging Face - Blog
Hugging Face - Blog
量子位
Blog — PlanetScale
Blog — PlanetScale
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
阮一峰的网络日志
阮一峰的网络日志
D
Docker
罗磊的独立博客
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
云风的 BLOG
云风的 BLOG
IT之家
IT之家
MyScale Blog
MyScale Blog
Microsoft Azure Blog
Microsoft Azure Blog

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
Fitbit and the GDPR Hurdle: What You Need to Know About Y...
Jessica Ryder · 2023-09-06 · via Compliance Solutions for Websites, Apps and Organizations | iubenda

Did you recently jump on the Fitbit bandwagon to track your fitness journey? While the device provides incredibly detailed insights into your health, a recent development raises questions about how your data is being used—or potentially misused.

Privacy organization noyb has filed complaints against Fitbit in Austria, the Netherlands, and Italy, alleging some serious GDPR violations.

Here’s what you need to know 👇

The Core Issues

According to noyb’s complaints, when you sign up for a Fitbit account in Europe, you’re essentially forced to agree to the transfer of your data to the United States and other countries with varying data protection laws. This is against GDPR requirements, which specify that consent must be freely given, informed, and specific.

As per the complaint, Fitbit doesn’t offer a clear path for users to withdraw their consent later, which is another GDPR requisite.

Not Just Basic Data

When we talk about data, we’re not just referring to mundane information like email addresses and birthdates. Fitbit’s policy allegedly allows for the sharing of more intimate data, such as your sleep patterns, weight, and even messages sent through their services.

And here’s the kicker: the company may share this data with unknown third parties, leaving you in the dark about who exactly has access to your personal information.

A “Take It or Leave It” Dilemma

Fitbit’s existing policy essentially offers you two options—either agree to their data-sharing policy or delete your account. The latter, of course, would mean losing all your previously logged health data, which undermines the very reason most people purchase a Fitbit in the first place.

Legal Repercussions

According to GDPR, consent can only be used as a lawful basis for transferring data outside the EU if it is for occasional, non-repetitive transfers. Fitbit’s alleged approach of routinely sharing data would therefore not be in line with the regulations.

This could have significant financial implications for Fitbit; if found guilty, the company could face fines up to €11.28 billion, based on the annual turnover of Google’s parent company, Alphabet.

Why This Matters for You

The Fitbit issue is not just about one company. It highlights how important it is to be aware of the permissions you grant when you use any online service, especially one that collects sensitive health data. Knowing your rights under GDPR and similar privacy laws can help you make informed choices.

Fitbit’s health-tracking capabilities may be top-notch, but the recent complaints suggest there might be some turbulence ahead for the company on the data protection front. The situation serves as a crucial reminder for consumers to always read the fine print, especially when it comes to how your sensitive data will be handled.

Stay tuned for updates on this issue and make sure you’re well-informed about where your data is going. Because when it comes to data privacy, knowledge is power.