News & Analysis as of

Data Privacy European Union CNIL

Hogan Lovells

New CNIL’s guidelines on AI models: a practical approach amidst EU’s regulatory tangles

Hogan Lovells on

Finding a European consensus around the regulation of artificial intelligence (AI) does not start with the adoption of laws. It results from their common interpretation and articulation within a broader digital regulatory...more

A&O Shearman

CNIL publishes Data Transfer Impact Assessment guide

A&O Shearman on

On January 31, 2025, the French supervisory authority (CNIL) published the final version of its guide on transfer impact assessments (TIA). A TIA must be undertaken by organisations relying on one of the ‘appropriate...more

BCLP

CNIL Strategic Plan 2025

BCLP on

The CNIL has published its strategic plan for the period of 2025-2028. This is typical of the CNIL, who regularly inform its stakeholders of its priorities....more

Fox Rothschild LLP

Do App Permissions Satisfy Requirements for Valid Consent for the Purpose of GDPR?

Fox Rothschild LLP on

App permissions do not satisfy the requirements for valid consent for the purpose of GDPR because they lack sufficient detail and granularity, according to the Commission Nationale de l’Informatique et des Libertés (CNIL)....more

Pillsbury - Consumer Protection Dispatch

GDPR Enforcement: Lessons from Recent Data Privacy Penalties

Recent decisions by the French data protection authority (CNIL) have highlighted the importance of GDPR compliance, particularly in the areas of data retention, consent for processing sensitive personal data, and marketing...more

Cooley LLP

Breach of Patients’ Data Leads to Heavy Sanctions in France

Cooley LLP on

At the end of February 2021, the French Data Protection Authority (CNIL) found out via the media about a massive personal data breach involving health-related data of about 500,000 French patients. After more than a year of...more

Pillsbury Winthrop Shaw Pittman LLP

Record €210 Million in Fines for Breach of Cookies and Website Tracking Rules—Note e-Privacy Directive, Not Just GDPR

France’s data protection regulator (the CNIL) said this week it has fined Google and Facebook a combined €210 million for breaches of laws on cookies use and tracking of user online activity. These fines were not under the...more

Ankura

Does Your Organization Maintain an Employee Facing Privacy Notice?

Ankura on

On Tuesday, June 15, 2021, a French court ordered IKEA to pay 1 million euros ($1.2 million) for spying on its employees in France. The allegations included reviewing employees' bank account records, using fake employees to...more

Hogan Lovells

CNIL Publishes FAQ Clarifying Cookie Use

Hogan Lovells on

The French Data Protection Authority (CNIL) published an FAQ on March 18, 2021 to further explain its earlier guidelines and “recommendation” on cookies and other tracking technologies, which were published on September 17,...more

BakerHostetler

International Data Protection Update – First Quarter 2021

BakerHostetler on

This quarterly update highlights some of the international data protection issues that have caught our attention, and the attention of our clients, in the past three months....more

Fox Rothschild LLP

Valuable Data Privacy Lessons In CNIL’s Enforcement Action Against Carrefour France

Fox Rothschild LLP on

In addition to the not-insignificant €2.25 million fine, CNIL's enforcement action against Carrefour France raises some universal points for companies handling data, both in the EU and in the U.S. Big Picture Takeaways:...more

McDermott Will & Emery

[Webinar] Ce que vous avez peut-être manqué des actualités RGPD: la montée en puissance de l’accountability? - June 25th, 1:30 pm...

McDermott Will & Emery on

McDermott Will & Emery a le plaisir de vous convier à un webinaire sur le thème "Ce que vous avez peut-être manqué des actualités RGPD: la montée en puissance de l’accountability?" qui abordera les thèmes suivants: -...more

McDermott Will & Emery

[Webinar] What You Might Have Missed in GDPR: The Rise of Accountability? - June 25th, 1:30 pm CEST

McDermott Will & Emery on

In our latest webinar we will be examining what you may have missed in the development of GDPR in the current global landscape, focusing in particular on: - Data transfers outside the EU: what to do with its standard...more

Hogan Lovells

Facial Recognition Challenged by French Administrative Court

Hogan Lovells on

In a decision (French only) dated 27 February 2020, the French Administrative Court of Marseille invalidated the deliberation of the Provence-Alpes-Côte d’Azur Regional Council which allowed to set up...more

Morgan Lewis

COVID-19 in France: Personal Data Protection in the Workplace

Morgan Lewis on

As prevention measures against the coronavirus (COVID-19) pandemic bump into the principles and guidelines of the EU General Data Protection Regulations (GDPR), the French Data Protection Authority has reinforced essential...more

Jones Day

Jones Day Global Privacy & Cybersecurity Update | Vol. 25

Jones Day on

UNITED STATES - Regulatory—Policy, Best Practices, and Standards - Cybersecurity Standards Issued for Government Contractors - On January 31, the Office of the Under Secretary of Defense for Acquisition and...more

BCLP

GDPR Privacy FAQs: What are the major differences between the Information Commissioner’s Office guidance on cookies and the CNIL’s...

BCLP on

The Information Commissioner’s Office or the “ICO” is the British supervisory authority charged with enforcing GDPR. The Commission Nationale de l’informatique et des libertes (the “CNIL”) is the French supervisory authority....more

Kelley Drye & Warren LLP

Europe’s Supreme Court Places Limits on the Right To Be Forgotten

On Tuesday, September 24, 2019, the European Court of Justice issued two rulings that further defined the right to be forgotten under European laws. The right to be forgotten, also known as the right to erasure, is a...more

Latham & Watkins LLP

No Deal Brexit and Data Transfers: Companies Must Prepare Now

Latham & Watkins LLP on

Companies should identify data flows, implement a data transfer solution, and update internal documents and privacy notices. Since our blog on “What a “No Deal” Brexit Means for UK Data Privacy”, the European Data...more

Jones Day

Global Privacy & Cybersecurity Update Vol. 14

Jones Day on

New York Attorney General Announces Record Number of Data Breach Notices in 2016 - On March 21, 2017, the New York Attorney General's Office announced that it received 1,300 reported data breaches in 2016—a 60 percent...more

Seyfarth Shaw LLP

No Safe Harbour? Immediate Implications for Employers

Seyfarth Shaw LLP on

A landmark decision of the European Court of Justice (ECJ) has held that companies may no longer rely on “Safe Harbour” to justify transferring personal data from the European Union to the US, because the US Government has a...more

Proskauer - Privacy & Cybersecurity

Google Declares “Non!” to French Privacy Regulator’s Demands that Google Apply the “Right to be Forgotten” Worldwide

In an expected but controversial move, Google has rejected a demand by the French Data Privacy authority CNIL to apply the European “Right to be Forgotten” worldwide. We have covered the E.U.’s Right to be Forgotten...more

22 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide