Issue 284

  • European Commission is examining Snapchat, YouTube, Apple App Store and Google Play for minor safeguards. 
  • Civil society groups have called on the European Commission to review the independence of Ireland’s data protection authority. 
  • The Catalan Data Protection Authority has released an updated online DPIA tool along with a revised practical guidance document. 
  • Italy’s new AI law now in force brings AI system governance in line with GDPR and the national Data Protection Code. 
  • The UK Upper Tribunal has issued a decision in Clearview AI data protection violations. 
  • Major tech companies’ temporary pause on political advertising is serving as an early test of the EU’s new transparency rules. 
  • The Isle of Man Information Commissioner publishes personal data breach report. 
  • The Data Protection Authority and Competition Authority of Netherlands issued a joint opinion on AI chatbots. 
  • The European Commission launched an AI Act Service Desk and Information Platform to help organisations implement the AI Act. 
  • Swiss Federal Data Protection Authority released an updated version of its cookie guidelines. 
  • UK’s National Cyber Security Centre published new guidance on detecting cyber threats. 
  • EDPB issued guidelines on how the Digital Markets Act interacts with GDPR obligations. 
  • Turkey’s KVKK updated its VERBIS registration guide and published a new Q&A resource for data controllers.
  • Canada’s federal and provincial privacy regulators have aligned key priorities during their annual coordination meeting. 
  • Newly enacted U.S. law requires businesses to notify affected individuals of data breaches within 30 days. 
  • Canadian lawmakers have advanced cybersecurity legislation to strengthen national security safeguards. 
  • California has enacted new privacy legislation aimed at strengthening data protection rights for individuals and simplifying the process to control personal data. 
  • IAB Canada released an overview mapping the use of AI technologies in digital advertising practices.
  • OAIC has issued guidance clarifying minimum age requirements for social media usage.
  • Australian Clinical Labs has been ordered to pay penalty of AUD 5.8 million in connection with a data breach incident.
  • Australian Cyber Security Centre has released new guidance to support cybersecurity resilience for critical infrastructure operators.