惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

U
Unit 42
博客园 - Franky
T
Tailwind CSS Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
月光博客
月光博客
人人都是产品经理
人人都是产品经理
雷峰网
雷峰网
Hugging Face - Blog
Hugging Face - Blog
有赞技术团队
有赞技术团队
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
阮一峰的网络日志
阮一峰的网络日志
C
Check Point Blog
爱范儿
爱范儿
T
The Blog of Author Tim Ferriss
aimingoo的专栏
aimingoo的专栏
Stack Overflow Blog
Stack Overflow Blog
博客园 - 聂微东
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
L
LangChain Blog
云风的 BLOG
云风的 BLOG
MyScale Blog
MyScale Blog
Microsoft Security Blog
Microsoft Security Blog
The Cloudflare Blog
博客园 - 三生石上(FineUI控件)

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
DPO Newsletter: Data Protection & Privacy News (issue #80...
Aert Hulsebos · 2022-10-27 · via Compliance Solutions for Websites, Apps and Organizations | iubenda
DPO Newsletter: Global Data Protection & Privacy News

We’ve compiled the latest in Data Protection and Privacy news for your convenience below.

1) Newly Published Documentation

  • The European Commission has published its Work Program 2023, which sets out its agenda for the targeted actions to complete the objectives of the mandate in terms of political strategy and key legislative proposals, among others. Read here →
  • The European Data Protection Board (EDPB) released its revised Guidelines 9/2022 on notifying the public of a personal data breach under the General Data Protection Regulation and is now looking for feedback from the general public. Access here →

2) Notable Case Law

  • The Court of Justice of the European Union (CJEU) issued its judgment in Case C-77/21 Digi Távközlési és Szolgáltató Kft. v. Nemzeti Adatvédelmi és Információszabadság Hatóság, concerning the request for a preliminary ruling submitted by the Court of Budapest-Capital. Read about the decision here →
  • The Italian data protection authority (Garante Privacy) found that a U.S. company unlawfully disclosed email accounts and health data relating to about 2,000 Italian diabetic patients and committed additional infringements of data protection laws. In particular, after downloading the app, users were expected to accept, by a single click, the terms of use of the service jointly with the contents of the privacy policy. The Authority’s summary can be found here → (in Italian)
  • Following complaints from NGOs, the French data protection authority (CNIL) fined Clearview AI €20 million in accordance with EU privacy rules and directed it to stop collecting data in France and destroy any data that had already been obtained. Read more on our blog →
  • The Danish data protection authority (Datatilsynet) published a decision expressing criticism against SmartResponse A/S for violations of Articles 5(1)(e), 6, 12(1), 13 of the General Data Protection Regulation following an investigation of the SmartResponse’s data processing practices. Access here → (In Danish)

3) New and Upcoming Legislation

  • The Czech Presidency of the Council of the European Union has prepared its latest compromise text for the proposed Artificial Intelligence Act, Euractiv reports. The text, now in its fourth drafting, features, among other things, updates on requirements for the use of AI by law enforcement, additional transparency requirements, and different factors for calculating penalties. The text will be discussed by the Council Working Group on Telecommunications and the Information Society on October 25 and, if no issues are raised, could be approved by mid-November. Reported here →

4) Strong Impact Tech

  • According to a Forbes article, ByteDance’s Internal Audit and Risk Control department, which looks into allegations of employee misconduct, intended to “collect TikTok data about the location of a U.S. citizen who had never had an employment relationship with the company” in at least two instances. Access the article here →
  • Meta has made public an internal security report that has found apps designed to steal Facebook login information are rampant on both of the big two app stores. The company says that it has found over 400 malicious apps of this nature between Android and iOS, which manage to stay afloat with a combination of professional artists and fake positive reviews to lend them an appearance of legitimacy. Read more here →
  • According to Government Security reports, U.S. Cybersecurity and Infrastructure Security Agency Director Jen Easterly called on organizations to push their users to adopt multi-factor authentication (MFA). Easterly called MFA “the seatbelt of the information highway” and suggested that companies should “forcefully push” users toward it. See here →
  • Twitter has asked a U.S. District Court judge in the Northern District of California to dismiss a class action complaint that the company collected users’ contact data and used it for advertising targeting, according to MediaPost reports. The company said its use of the data was consistent with its privacy policy and that it “did not sell or even disclose” information. The complaint follows the U.S. Federal Trade Commission’s $150 million fine against Twitter. Reported here →

Other key information from the past weeks

  • In response to a complaint made, the Italian DPA (Garante Privacy) fined Intesa Sanpaolo Vita S.p.A. €20,000 for violating Articles 5(1)(a) and 5(1)(f) of the General Data Protection Regulation (Regulation (EU) 2016/679) (GDPR).
  • The EU lawmaker leading on the cloud-related provisions of the Data Act wants to remove the obligation that cloud providers must ensure an equivalent level of service when a client changes provider.
  • The fashion e-commerce platform Shein has been fined $1.9 million by the attorney general of the state of New York for a data breach, according to a notice from the state’s Attorney General office.

About us

iubenda

Attorney-level solutions to make your websites and apps compliant with the law across multiple countries and legislations.

www.iubenda.com