article thumbnail

European Data Protection Roundup – February 2025

Debevoise Data Blog

Our top-five European data protection developments from February are: European Commission publishes guidelines on prohibited AI practices : The EU Commission has published non-binding guidance on the EU AI Acts prohibited use cases. Spanish Telecomm Provider Fined 1.2 Spanish Telecomm Provider Fined 1.2

article thumbnail

European Data Protection Roundup – Q4 2024

Debevoise Data Blog

Our top-eleven European data protection developments for the end of 2024 are: EU Cyber Resilience Act: The Council of the European Union approved the Cyber Resilience Act , introducing cybersecurity requirements for digital products sold in the EU. The UK Upper Tribunal did not consider the provisions under the UK GDPR.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

European Data Protection Roundup – January 2025

Debevoise Data Blog

Our top five European data protection developments from January are: UK ransomware reporting proposals. DeepSeek investigated by Italian DPA over AI chatbot data collection practices. UK ICO acts on cookie compliance.

article thumbnail

Data Protection in the Workplace: Employer Guidance

Legal IT Group

For example, in 2020, the Data Protection Authority of Hamburg imposed a 35.3 This fact became known when the H&M servers encountered a technical error, and the data on the network drive became accessible to all employees for a few hours. Read more about employer monitoring and data protection in our previous article.

article thumbnail

New laws of the USA on data protection in 2023

Legal IT Group

Therefore, individual states took matters into their own hands and passed local laws to protect the privacy of their residents. Virginia The Virginia Consumer Data Protection Act ( VCDPA ) was adopted in the spring of 2021 and came into force on January 01, 2023. Conclusion What does it actually mean for business?

article thumbnail

Dutch SA Sanctions Credit Card Company for Failure to Perform Data Protection Impact Assessment

Inside Privacy

In December 2023, the Dutch SA fined a credit card company €150,000 for failure to perform a proper data protection impact assessment (“DPIA”) in accordance with Art. 35 GDPR for its “identification and verification process”. In particular, the processing was large scale (1.5

article thumbnail

Certified electronic communications, key elements for document management

Global LegalTech Hub

Contract management therefore requires the continuous protection of a company’s contractual relationships, tackling and resolving any difficulties that may arise throughout the life cycle of the contract. Not complying with regulations surrounding legitimacy and data, among other issues, can lead to substantial financial penalties.