Latest Posts › Personal Data

Share:

AI Watch: Global regulatory tracker - OECD

The OECD's AI recommendations encourage Member States to uphold principles of trustworthy AI. Laws/Regulations directly regulating AI (the “AI Regulations”) The OECD's Recommendation of the Council on Artificial...more

The Data Act – the EU's bid to "ensure fairness in the digital environment and a competitive data market" – has been adopted

On November 27, 2023, the European Union ("EU") adopted the final text of the Data Act, marking an effort to create a harmonized, cross-sectoral data sharing framework with the stated goal of ensuring fair access to and use...more

The UK-US Data Bridge: Practical Considerations for UK Organisations

The UK-US Data Bridge (the "Data Bridge") has now come into effect, potentially simplifying transfers of personal data from the UK to the US. On 12 October 2023, the Data Bridge took effect. The Data Bridge allows UK...more

US and EU Approve Framework for Personal Data Transfers

The United States ("U.S.") and the European Union ("EU") have settled on a framework for transfers of personal data for the first time since the European Court of Justice ("CJEU") effectively invalidate the EU-U.S. Privacy...more

Somewhere Between a Summary and a Data Dump – CJEU Finds Controllers Must Provide Data Subjects a “Faithful And Intelligible” Copy...

The Court of Justice of the EU (CJEU)1 has held that the General Data Protection Regulation (GDPR) requires controllers to provide data subjects a "faithful reproduction" of their personal data, which takes into account the...more

CJEU clarifies GDPR obligation to disclose details of recipients

The GDPR allows individuals to request information about the “recipients or categories of recipients” to whom their personal data has been disclosed. In a recent ruling, the EU’s Court of Justice said data subjects get to...more

EDPB issues guidelines on right of access under Art. 15 GDPR

On January 18, 2022, the European Data Protection Board (the "EDPB") issued the Guidelines 01/2022 on data subject rights - Right of access (the "Draft Guidelines"), laying out its interpretation of Article 15 GDPR on the...more

UK Supreme Court dismisses data protection class action claim

The Supreme Court of the United Kingdom has delivered its long-awaited decision in the case of Lloyd [2021] UKSC 50, rejecting an attempt to bring a representative claim for compensation for "loss of control" over personal...more

How changing attitudes toward data sharing could accelerate smart city adoption

The pandemic seems to have prompted people to rethink their attitudes toward sharing personal data, particularly when it is used to manage public health and provide essential services. Can this shift serve as a catalyst for...more

Rules on Cross-Border Data Transfers become (a little) clearer

In recent weeks, there has been a series of important developments affecting cross-border data transfers. First, on 21 June 2021, the European Data Protection Board ("EDPB") published its final, much-anticipated...more

Just Arrived – the New Standard Contractual Clauses for International Data Transfers

The European Commission recently published an updated version of the standard contractual clauses for the transfer of personal data to third countries ('SCCs'). Companies can use such SCCs to provide the appropriate...more

Court of Justice invalidates EU-U.S. ‘Privacy Shield’ pact

The Court of Justice of the EU has declared that the European Commission's adequacy decision in respect of the EU-U.S. Privacy Shield is invalid. The Court's ruling effectively removes a key mechanism that had been widely...more

UK ICO issues major fines and criticises lack of data protection due diligence in corporate acquisitions

The UK Information Commissioner's Office announced more than £280 million of fines last week, in connection with data protection breaches. It singled out the perceived failure of buyers to conduct proper data protection due...more

Guidelines on the Certification Mechanisms under the GDPR

The European Data Protection Board ("EDPB") has published guidelines on the use of the certification mechanism under the GDPR. Certifications are intended to help businesses provide evidence of compliance with the GDPR. The...more

Singapore and Hong Kong agree to strengthen data protection cooperation

On 31 May 2019, the Data Protection Authorities of Singapore and Hong Kong signed a Memorandum of Understanding ("MoU") intended to strengthen cooperation in data protection in the two jurisdictions....more

High Court considers the scope of Subject Access Requests and their exemptions

EU data protection law contains a powerful tool called a Subject Access Request ("SAR") which allows an individual to obtain copies of data about themselves, on demand, within a tight timeframe, and at low cost. Satisfying...more

Chapter 19: Glossary – Unlocking the EU General Data Protection Regulation

ad hoc clauses means a set of clauses for Cross-Border Data Transfers, which require prior approval by a DPA (see Chapter 13). Adequacy Decision means a decision by the Commission to designate a third country as an...more

Chapter 18: Relationships with other laws – Unlocking the EU General Data Protection Regulation

Why does this topic matter to organisations? The GDPR is now the main instrument governing EU data protection law across all Member States. The Directive, which was almost 20 years old, has been repealed. However, the...more

Chapter 17: Issues subject to national law – Unlocking the EU General Data Protection Regulation

Why does this topic matter to organisations? Although a key aim of the GDPR is to harmonise data protection law across the EU, there are a number of areas in which the GDPR leaves it to Member States to adopt their own...more

40 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide