Austrian DPA Finds Microsoft’s Tracking of Students Breaches GDPR
Austrian data authority ruled Microsoft illegally tracked a minor via Microsoft 365 Education cookies without consent, ordering the company to stop within four weeks.
Austrian data authority ruled Microsoft illegally tracked a minor via Microsoft 365 Education cookies without consent, ordering the company to stop within four weeks.
Ireland plans new laws to expand police powers for intercepting encrypted communications and using spyware, with legal safeguards aligned to EU standards.
The EDPB and EDPS support AI Act simplification but stress protecting fundamental rights, maintaining DPA roles, and limiting delays in high-risk AI system rules.
The EDPB recommends e-commerce sites offer guest checkout to protect user privacy, allowing mandatory accounts only for specific services under GDPR rules.
The EU court ruled that websites hosting user content must actively protect user privacy and comply with GDPR, including for anonymous users, or face heavy fines.
The EU Digital Omnibus complicates consent management for publishers, risking lower consent rates and favoring big tech with closed ecosystems.
EU officials’ location data was easily accessed through commercial brokers despite GDPR protections, raising concerns about data privacy enforcement in Europe.
EDPS updated guidance strengthens data protection rules for generative AI used by EU institutions, adding a practical compliance checklist and clearer controller/processor responsibilities.
EDPB and European Commission issued joint guidelines clarifying how gatekeepers must apply GDPR obligations when complying with the Digital Markets Act; public consultation open until 4 Dec 2025.
Austrian regulator found Microsoft 365 Education illegally tracked students via cookies; Microsoft must grant data access and faces scrutiny over transparency and GDPR compliance.
EU plans to force scanning of encrypted messages were postponed after Germany opposed Chat Control; critics say it would weaken encryption, harm security and push users to risky alternatives.
EU plans to simplify cookie consent rules to reduce repetitive banners, propose browser-level preferences and possible GDPR alignment, drawing industry support and privacy concerns.