The Slovenian Information Commissioner Monday launched the "Become a Privacy PRO (tector)" project, an effort to raise awareness of personal data protection among children, young people and their caregivers.
The Policy Data Protection Authority fined medical center Centrum Medyczne Ujastek around $278,000 for installing imaging devices that recorded in two rooms of the neonatology branch. The authority said the center breached applicable regulations, didn't inform patients and staff about the recordings, and used unencrypted memory cards, which were later stolen. The monitoring recorded a picture showing newborns and their mothers during intimate activities such as feeding, the regulator said.
French data protection authority CNIL Friday published the final version of its guide on impact assessment of data transfers. The guide aims to ensure that companies ensure the same level of protection as the General Data Protection Regulation (GDPR) in their data flows.
Poland wants closer ties with the ITU as the nation begins its EU Council presidency (Jan. 1 - June 30), Secretary of State Michal Gramatyka, Ministry for Digital Affairs, said at the recent Data Protection Day conference in Brussels. This initiative has implications for privacy and data protection issues and policies, Gramatyka wrote in an email Friday.
Social media networks have adopted between 44% and 76.5% of practices recommended for complying with the General Data Protection Regulation's data subject access rules, French privacy watchdog CNIL said Thursday in an unofficial translation.
The European Court of Justice's General Court ruled Wednesday that the Irish Data Protection Commission (DPC) acted unlawfully when it refused to investigate a complaint from Noyb, the Austrian privacy organization. The ruling was issued in Data Protection Commission v. European Data Protection Board (joined cases T‑70/23, T‑84/23 and T‑111/23).
The Catalan (Spain) Data Protection Authority Tuesday published its methodology for fundamental rights impact assessments. It aims to give AI providers and deployers an "effective tool to develop trustworthy and human-centered AI solutions," the watchdog said.
Personal data protection is important but shouldn't be an unnecessary obstacle to innovation and development, the Swedish Data Protection Authority said Tuesday in a newspaper op-ed unofficial translation. Accordingly, there are good reasons to consider criticism of the General Data Protection Regulation (GDPR), it added.
French privacy regulator CNIL received notice of more than 5,600 personal data breaches in 2024, a 20% increase from 2023, it reported Tuesday in unofficial translation. Even worse, it said, was the "worrying trend" of very large-scale violations last year. In response, the regulator said, cybersecurity has become one of its priorities this year. That means supporting organizations via recommendations for protecting personal data in light of evolving threats; placing controls on organizations' implementation of safety measures; and making individuals aware of cybersecurity so they can help safeguard their data. The CNIL also said it will boost coordination with cybersecurity actors, including France's cybersecurity agency.
The Danish Data Protection Agency Monday published two security measures relating to the safe transmission of data, according to an unofficial translation. The measures replace some existing guidance on data transmission via e-mail and SMS, an area that can quickly become obsolete, it said.