EDPB and EDPS Issue Joint Opinion on the European Biotech Act Proposal
The EDPB and EDPS support the European Biotech Act proposal while urging strong data protection measures for clinical trial participants and clear legal roles under GDPR.
The EDPB and EDPS support the European Biotech Act proposal while urging strong data protection measures for clinical trial participants and clear legal roles under GDPR.
The Spanish Data Protection Authority issues detailed GDPR guidance to help organizations manage privacy risks of autonomous agentic AI systems.
The Dutch Data Protection Authority warns against using OpenClaw AI due to serious security risks and urges compliance with GDPR to protect personal data.
Austrian data authority ruled Microsoft illegally tracked a minor via Microsoft 365 Education cookies without consent, ordering the company to stop within four weeks.
Ireland plans new laws to expand police powers for intercepting encrypted communications and using spyware, with legal safeguards aligned to EU standards.
The EDPB and EDPS support AI Act simplification but stress protecting fundamental rights, maintaining DPA roles, and limiting delays in high-risk AI system rules.
The EDPB recommends e-commerce sites offer guest checkout to protect user privacy, allowing mandatory accounts only for specific services under GDPR rules.
The EU court ruled that websites hosting user content must actively protect user privacy and comply with GDPR, including for anonymous users, or face heavy fines.
The EU Digital Omnibus complicates consent management for publishers, risking lower consent rates and favoring big tech with closed ecosystems.
EU officials’ location data was easily accessed through commercial brokers despite GDPR protections, raising concerns about data privacy enforcement in Europe.
EDPS updated guidance strengthens data protection rules for generative AI used by EU institutions, adding a practical compliance checklist and clearer controller/processor responsibilities.
EDPB and European Commission issued joint guidelines clarifying how gatekeepers must apply GDPR obligations when complying with the Digital Markets Act; public consultation open until 4 Dec 2025.