惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

P
Proofpoint News Feed
博客园_首页
WordPress大学
WordPress大学
大猫的无限游戏
大猫的无限游戏
有赞技术团队
有赞技术团队
阮一峰的网络日志
阮一峰的网络日志
Hugging Face - Blog
Hugging Face - Blog
博客园 - 【当耐特】
酷 壳 – CoolShell
酷 壳 – CoolShell
Y
Y Combinator Blog
Vercel News
Vercel News
The GitHub Blog
The GitHub Blog
T
The Blog of Author Tim Ferriss
云风的 BLOG
云风的 BLOG
博客园 - 司徒正美
Engineering at Meta
Engineering at Meta
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
J
Java Code Geeks
Stack Overflow Blog
Stack Overflow Blog
N
Netflix TechBlog - Medium
Martin Fowler
Martin Fowler
宝玉的分享
宝玉的分享
G
Google Developers Blog
Last Week in AI
Last Week in AI

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
Digital Omnibus update: Council drops the contextual ads ...
Andrea Orivati · 2026-05-29 · via Compliance Solutions for Websites, Apps and Organizations | iubenda

This week at a glance

• Per sources cited by Euractiv, the Council has removed a proposed exemption that would have allowed contextual ad measurement without user consent
• The AI Omnibus side is now in adoption mode: a consolidated text is circulating and analysts expect formal adoption with only minor changes
• The European Commission refreshed its Data Union Strategy page, a reminder that the wider Digital Package is moving on multiple tracks

Council shifts on contextual ads

A potentially significant change appeared in the Council’s latest compromise text on the Digital Legislation Omnibus, circulated around May 21. As Euractiv reports, sources familiar with the document say the Council has dropped a previously proposed carve-out for measuring contextual advertising without consent.

For context, contextual advertising shows ads based on the content of the page someone is viewing, not on tracking the user across sites. The earlier proposal would have treated measurement of those ads as low-risk enough to skip the consent layer. The Council has now pulled that exemption back. Official documentation is still pending, so the change is being read off compromise text rather than a public announcement.

If the deletion holds through trilogue, the current consent baseline for ad measurement stays in place, and one of the more business-friendly elements industry had hoped to see in the Digital Legislation Omnibus disappears.

“The consent framework should reward lower-risk practice. Contextual advertising doesn’t track users across sites, and treating its measurement as requiring consent regardless puts it in the same category as behavioural profiling. That’s not risk-based regulation. It’s uniform regulation. If the deletion holds, the Omnibus delivers structural tidying without the substantive reform the framework actually needed.”

Giulia Stancampiano, Director of Legal (Privacy & Tech), iubenda

The AI Omnibus moves into adoption mode

On the AI side, the file is shifting from negotiation to implementation. Bird & Bird put out a consolidated version of the AI Act with the provisionally agreed Omnibus amendments woven into the text. Practically, compliance, legal, and product teams now have one working document, instead of toggling between the AI Act and a separate amending instrument.

The mood is similar in Stephenson Harwood’s May newsletter, which reads the COREPER-approved text as likely to pass formal adoption with only minor changes. The same piece flags the EDPS pilot AI regulatory sandbox and broader European-UK coordination as practical parts of AI readiness, not side issues.

Also this week

The European Commission refreshed its Data Union Strategy page on May 20, restating three pillars: improving data access for AI, simplifying the EU data rulebook, and protecting EU data sovereignty in international flows. It’s a useful reminder that the AI Omnibus is one strand of a wider effort. Expect related changes in data access, contracts, and cloud governance over time.

We also published our own analysis on browser-level consent signals under proposed Article 88b GDPR. If adopted, that mechanism could turn CMPs into the infrastructure that receives and applies machine-readable user preferences across the web. Privacy and product teams should already be thinking about interoperability and signal hierarchies.

For a practical readout aimed at AI governance teams, Pandectes’ May 20 post walks through content-marking timelines, the stricter conditions on using special-category data for bias detection, and the expanded AI Office role over GPAI-based systems.

“Browser-level signals are the wrong instrument if the goal is meaningful consent. They concentrate infrastructure in browser vendors outside European regulatory reach, they can’t carry the specificity GDPR requires, and they don’t fix the storage problem that actually drives consent fatigue. If the mechanism advances, the question that needs an answer before implementation is signal hierarchy: when a browser preference conflicts with a direct on-site choice, which one legally governs? The current text doesn’t resolve it, and as with much of Art. 88b, the answer appears to be: standards will figure it out.”

Giulia Stancampiano, Director of Legal (Privacy & Tech), iubenda

Worth watching

  • Formal adoption of the AI Omnibus. With a consolidated text circulating, the path to OJEU publication is opening. Watch for Parliament and Council to sign off before the August 2, 2026 cliff.
  • The Digital Legislation Omnibus. With the contextual ads carve-out now reportedly off the table, attention will turn to other contested points: pseudonymization scope, legitimate interest for AI processing, and the proposed Article 88b cookie mechanism.
  • Browser-level consent signals. The Article 88b proposal could meaningfully shift the role of CMPs. Worth getting ahead of the design questions now.