Remove Blog Remove Data protection Remove e-filing
article thumbnail

European Data Protection Roundup – August 2023

Debevoise Data Blog

The AEPD held that a DPO cannot hold a position that leads them to determine the purposes and means of data processing. The scale and data protection risks associated with such technologies has been further complicated recently by their increasing integration with artificial intelligence systems.

article thumbnail

European Data Protection Roundup – October 2023

Debevoise Data Blog

Data protection & AI: In particular: (i) the French CNIL published its first set of guidance on GDPR compliance when developing AI tools; and (ii) the UK ICO issued a preliminary enforcement notice against Snap over its AI chatbot, alleging that Snap had not adequately assessed the privacy risks posed to child users of the tool.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

European Data Protection Roundup – March 2023

Debevoise Data Blog

UK ICO updates guidance to clarify requirements for fairness in AI What happened : The UK ICO has updated its existing Guidance on AI and data protection following requests from industry to clarify requirements for fairness in AI. Norwegian Data Protection Authority fines medical device company c.$240,000

article thumbnail

European Data Protection Roundup – June 2021

Debevoise Data Blog

Here are our highlights: European Commission adopts new Standard Contractual Clauses What happened : As reported in our blog post , the European Commission adopted its new Standard Contractual Clauses (“SCCs”) for the cross-border transfer of personal data from the EEA to “third countries”.

article thumbnail

European Data Protection Roundup – June & July 2023

Debevoise Data Blog

. : Business may want to revisit their cross-border data transfer arrangements following the new adequacy decision for the EU-U.S. Data Privacy Framework, assess whether they are eligible to self-certify and, if they are, whether it makes sense to. Data Privacy Framework (the “DPF”).

article thumbnail

European Data Protection Roundup – October 2020

Debevoise Data Blog

ICO targets the data broking industry : On 27 October, the ICO demanded that Experian make sweeping changes to data protection practices within its direct marketing business within three months or face further enforcement action. We will continue to report on developments as Experian’s appeal progresses.

article thumbnail

European Data Protection Roundup – January 2021

Debevoise Data Blog

As covered in our Annual Review , 2020 was a blockbuster year for European data protection. The decision draws parallels with the AI-related claims brought against Uber in the Netherlands , and is another example of the cross-over between data protection and employment law. CJEU Opinion clarifies the one-stop-shop.