EU & UK
- European Parliament adopted the proposal to create a European Health Data Space aimed at improving access to personal health data across EU states and bolstering secure data sharing for research.
- UK’s Information Commissioner’s Office issued a fine of GBP 1,000,000, which subsequently was reduced to GBP 350,000, against the Ministry of Defense for violation of the UK General Data Protection Regulation.
- UK’s Information Commissioner’s Office published two draft guidance to help employers fully comply with data protection law focusing on keeping employment records, and recruitment and selection.
- Belgian Data Protection Authority published its decisions in which it approved Binding Corporate Rules related to UPS Europe SRL and Collibra Belgium BV for the transfer of personal data.
AMERICAS
- Federal Communications Commission adopted rules to modify its data breach notification rules to ensure that telecommunications providers, interconnected Voice over Internet Protocol (VoIP), and telecommunications relay services adequately safeguard sensitive customer information.
- The California Privacy Protection Agency announced that its Board had voted to advance a legislative initiative to require browser vendors to include a feature that allows users to exercise their California privacy rights through opt-out preference signals.
- U.S. Department of Health & Human Services announced that Lafourche Medical Group LLC had entered into a Resolution Agreement in which it agreed to pay USD 480,000 to the HHS Office for Civil Rights and to adopt a corrective action plan to settle potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Rules.
- Canada’s Office of the Privacy Commissioner released principles for responsible, trustworthy, and privacy-protective generative artificial intelligence technologies.
INDIA AND ASIA PACIFIC
- The Central Consumer Protection Authority of India published the Guidelines for Prevention and Regulation of Dark Patterns, 2023 in the Official Gazette.
- Singapore’s Ministry of Health released Cyber & Data Security Guidelines for Healthcare Providers.
- The Saudi Data & Artificial Intelligence Authority launched the National Data Governance Platform for entities registration under PDPL.
