The European Data Protection Board has published guidelines on the interaction of the Digital Services Act (DSA) and the General Data Protection Regulation (GDPR) on 12 September 2025.
The importance of complying with cookie consent requirements under the GDPR and ePrivacy Directive was also emphasized upon by other national authorities. On September 1st 2025, France’s data protection authority (CNIL) fined...
A German court ruled in March 2025 that cookie consent banners must present a “Reject All” button as clearly and prominently as “Accept All” – and this applies to any website targeting users in the EU, regardless of where the company is based.
On February 6, 2025, Advocate General Maciej Szpunar of the Court of Justice of the European Union (CJEU) delivered an opinion in Case C-492/23, clarifying the liability of online marketplace operators concerning...
The UK’s Information Commissioner’s Office (ICO) has fined Advanced, a leading IT services provider, £3.07 million for failing to protect sensitive data, following a major ransomware attack in 2022. The breach...
As artificial intelligence (AI) continues to reshape industries, regulatory bodies are tightening their oversight to ensure data protection remains a priority. In response, France’s data protection authority, CNIL, has released...
The Irish Data Protection Commission (DPC) has issued a staggering €310 million fine to LinkedIn Ireland, marking the highest GDPR penalty of the year, issued in October. This penalty resulted...
Apple is stepping up its enforcement of the EU Digital Services Act (DSA) requirements, ensuring apps distributed via its App Store meet new trader obligations. The clock is ticking for developers...
The European Commission is intensifying efforts to ensure Member States (MS) transpose EU directives into national law. Hereby the body opened infringement procedures against...