Join Robert each week as he navigates the ever-changing landscape of data breaches, surveillance, and individual rights, offering expert insights and actionable...
Italian DPA fines OpenAI €15 million, CPPA settles with unregistered data brokers, and Google plans to allow fingerprinting via Google Analytics
Send us a textPrivacy Corner Newsletter: January 2, 2025In this edition:▶ OpenAI faces penalties for GDPR breaches linked to ChatGPT, including transparency failures and inadequate age verification.▶ California Privacy Protection Agency settles with two more data brokersPayDae and The Data Group fined for failing to register under California’s Delete Act, with further enforcement anticipated.▶ Google will permit device fingerprinting starting February 16, 2025, despite ICO objections.Before we wrap up…Privado.ai is thrilled to announce Bridge 2025: A Technical Privacy Summit, happening virtually from February 5-6, 2025.👇 Discover actionable solutions that connect privacy laws to practical engineering strategies, including:- Unlocking privacy ROI- Navigating adtech compliance challenges- Designing privacy-first engineering frameworksMark your calendars and join the privacy engineering revolution here:https://www.privado.ai/bridge-privacy-summit
--------
11:39
Irish DPA fines Meta €251 million, Dutch DPA fines Netflix €4.75 million, and French DPA targets non-compliant cookie banners.
Send us a textPrivacy Corner Newsletter: December 19, 2024In this edition:The Irish DPA fines Meta €251 million over a 2018 data breach, the Dutch DPA fines Netflix €4.75 million for transparency failings, and the French DPA cracks down on non-compliant cookie banners.▶ Irish DPA fines Meta €251 million over 2018 data breachThe fine follows a breach affecting 29 million Facebook accounts. The DPC found violations of GDPR’s data protection by design, breach reporting obligations, and more.▶ Dutch DPA fines Netflix €4.75 million for transparency failuresNetflix failed to disclose adequate privacy information, leading to a fine for GDPR violations regarding transparency, data retention, and international data transfers.▶ French DPA issues cookie banner crackdownWebsite operators have one month to comply with stricter cookie consent rules, addressing dark patterns and ensuring an equal choice between accepting and rejecting cookies.
--------
8:29
FTC Targets Sensitive Data Misuse, Australia’s Kids’ Social Media Ban, and Noyb’s New GDPR Powers
Send us a textPrivacy Corner Newsletter: Dec 5, 2024In this edition:The FTC proposes orders targeting sensitive data misuse, Australia bans kids from social media, and noyb gains new powers for collective GDPR actions.▶ FTC targets sensitive location data misuse in proposed orders:Gravy Analytics and Mobilewalla face sanctions for selling sensitive location data, including segments like “New Parents” and “LGBTQ+ Community.”▶ Australia bans kids from social media and reforms privacy laws:New laws require stricter age verification, ban accounts for under-16s, and introduce a tort for serious privacy invasions.▶ Noyb gains rights to bring GDPR “class actions” across the EU:Now recognized as a “qualified entity,” noyb can enforce collective claims and injunctions against GDPR violations.
--------
11:57
Germany's Mass Data Breach Claims, Meta's 'Consent-or-Pay' Ads and New EU Cybersecurity Rules
Send us a textPrivacy Corner Newsletter: November 21, 2024▶ German Court Opens the Door to Mass Data Breach Lawsuits:Germany’s Federal Court rules that "loss of control" over personal data qualifies for damages under GDPR Article 82—no proof of distress or financial loss required.▶ Meta’s ‘Unskippable Ads’ Solution Gains EDPB AttentionMeta launches a free tier with ads using minimal data and unskippable formats in response to EU demands.▶ Cyber Resilience Act Imposes New Rules on Digital ProductsThe EU’s Cyber Resilience Act sets strict cybersecurity and data protection requirements for most digital products, with significant penalties for non-compliance starting 2027.#Privado #ThePrivacyCorner #GDPR #EDPB #CyberAct #EU
--------
9:42
LinkedIn's €310M Fine, California's Data Broker Sweep, and the EU-US DPF Review
Send us a textPrivacy Corner Newsletter: November 7, 2024In this edition, we dive into the latest updates on GDPR fines, data broker enforcement, and the EU-US Data Privacy Framework review:▶ Ireland fines LinkedIn €310 million, six years after a complaint—with full EDPB support:The Irish DPC issues a €310 million fine against LinkedIn for GDPR violations, marking a significant shift in enforcement under new leadership.▶ California prepares for a data broker enforcement sweep:The California Privacy Protection Agency targets non-compliant data brokers, enforcing new registration and deletion requirements under the Delete Act.▶ The EDPB reviews the first year of the EU-US Data Privacy Framework:The EDPB’s first-year review of the EU-US DPF highlights both successes and areas for improvement in the data-sharing framework.#privado #privacycodescanning #compliance #privacyengineering #gdpr #cpra #ccpa #mhmda #dataprivacy #compliance #softwarecodescanning
Join Robert each week as he navigates the ever-changing landscape of data breaches, surveillance, and individual rights, offering expert insights and actionable advice to help you take control of your digital footprint. Join him for lively discussions, in-depth interviews, and practical tips to protect your privacy in today's connected world.