Following the positions expressed by the Austrian, German and French Supervisory Authorities (see our previous Alert), the Italian Supervisory Authority (Garante per la Protezione dei Dati Personali, Garante-) published on 9 June 2022 a specific measure, according to which website analytics solutions used to measure online audience (Analytics Service Solutions) infringe on the EU General Data Protection Regulation no. 2016/679 (GDPR – external source) when such use implies a transfer of personal data to a third country without an adequate level of personal data protection, such as the United States. Generally speaking, the Garante, aligned its position on the matter with its counterparts.(more…)
Italy: Supervisory Authority Weighs in on Website AnalyticsJuly 29th, 2022 | Posted by Claude-Etienne Armingaud in cookies | English | Europe | internet | Privacy | Social Networks - (0 Comments)
GDPR, Cookies and the Ever-Filling Jar of European Data ProtectionJanuary 27th, 2022 | Posted by Claude-Etienne Armingaud in cookies | Europe | Privacy - (0 Comments)
European regulators unofficially announced the major theme of this new year, through the release of several decisions pertaining to cookies and other tracking technologies in the first 10 days of 2022.
As the General Data Protection Regulation (GDPR) is approaching the fourth anniversary of its entry into force, the ePrivacy Regulation—a companion piece to address online communication and that was supposed to be adopted at the same time—remains in the limbo of the European legislative process.
In the meantime, the effects of the Schrems II decision of 16 July 2020 (see our alert here), which canceled the Privacy Shield and placed stricter requirements on the use of standard contractual clauses, continues to ripple through data protection compliance efforts of companies worldwide.(more…)
Cookies: New Awareness Campaign by the French Supervisory AuthorityFebruary 24th, 2021 | Posted by Claude-Etienne Armingaud in cookies | France | Privacy - (0 Comments)
The French Supervisory Authority has set 31 March 2021 as the end of the “reasonable period” to bring websites and mobile applications into compliance.
To make its action plan on online advertising effective and in view targeting of the deficiencies witnessed in both the public and private sectors, the CNIL set a specific deadline for the implementation of its recommendation: 31 March 2021.(more…)
French Administrative Supreme Court Endorses Data Protection Authority’s Position on Cookies, Prohibits Prohibition on Cookie WallsJuly 25th, 2020 | Posted by Claude-Etienne Armingaud in Case Law | cookies | eCommerce | Press | Privacy - (0 Comments)
On 4 July 2019, the French Data Protection (CNIL) published its Guidelines on Cookies and Other Tracking Technologies (the Guidelines, available in French here). The Guidelines further detailed the nature of the interplay between the General Data Protection Regulation (GDPR) which reinforced expectations towards obtaining consent to data processing operations when such consent is required), and the ePrivacy Directive which more specifically addresses the privacy requirements on cookies and other tracking technologies. Indeed, while the ePrivacy Directive was expected to be updated through an ePrivacy Regulation (latest draft proposal available here), on or before GDPR entered into force, it remains under discussion at the European level to this day, and subject to intense lobbying by all stakeholders.
CNIL loses on cookie walls, wins on everything elseJune 22nd, 2020 | Posted by Claude-Etienne Armingaud in cookies | France | Interview | Privacy - (0 Comments)
France’s top administrative court has overruled the country’s data authority regarding “cookie walls”, stating that as an agency that only offers guidelines – so-called flexible laws – the authority cannot prohibit their use.
Cookie walls prevent internet users from accessing websites unless they consent to the use of tracking cookies, which often gather data used by advertisers.(more…)
case law, consent, Consentement, cookies, Cookies, gdpr à modifier, personal data
EU Data Protection: Updated EDPB Guidance on Consent Clarifies the Mechanism for Cookie ConsentMay 11th, 2020 | Posted by Claude-Etienne Armingaud in cookies | Europe | Privacy - (0 Comments)
Approaching its second anniversary this month, the European General Data Protection Regulation (GDPR) has never been as relevant as in these unprecedented COVID-19 times. While several countries are considering the implementation of contact tracing apps, a consensus has seemed to surface on subjecting their use to a voluntary basis. The notion of “consent” remains therefore the cornerstone (albeit not the only one) of the European data protection framework.
TagsAdequacy APAC big data blockchain case law cnil code of conduct competition connected car consent cookies copyright court of justice data protection data transfers deal ecommerce economy europe european union france GDPR government healthcare health data information technologies infringement intellectual property internet legal500 legislation live sciences marketing Privacy privacy privacy shield rankings regulation réseau social scc schrems standard contractual clauses technologies telecom world
Claude Armingaud CIPP/E Follow
Attorgeek, partner @klgates - NY/Paris bars, CIPP/E, dabbling in #GDPR, Data Protection, #AutonomousCar #FinTech, IP, IT, & all things nerdy. Also @clawdey
Oh come on, Monday... https://lnkd.in/eV3gqdh7
Well, here we go with Episode 2 of K&L Gates #GatewayToPrivacy!
Take a road trip across the US and its myriad of #privacy laws -- fear not, Whitney McCollum and @JakeBernsteinWA are the best navigators you could hope for on this j…https://lnkd.in/edMujebH https://lnkd.in/eFhVxznu
Well that's a wrap on #DPI23 France and what a blast it's been!
A huge thank you to every one at IAPP - International Association of Privacy Professionals who made it possible (and especially Isabelle, Nils, and Caroline Crouzette, my wonderful partner i…https://lnkd.in/eN2BrExG
We've heard a lot about SCCs, BCRs and even Codes of Conduct over the #DPI23 France conference--now let's turn to another trick up #GDPR's sleeve with our first hybrid panel: Fabrice Naftalski, Grit Karg, @GDPMOBILE and Sébastien Z. with a focus on #Healt…https://lnkd.in/evcqCvAb
#ArtificialIntelligence and #DataProtection at global level. How can we navigate?
It all starts with a #DPI23 gym class thanks to Léa Richard Julia Collinet @Cody__Olson and Killian Vermersch!
#PrivacyPros #GDPR #AI https://lnkd.in/eJsE5sab
- IAPP DPI: France 2023
- Leaders League Ranking 2023 – Technologies, internet & telecommunications – Internet – France
- Leaders League Ranking 2023 – Technologies, internet & telecommunications – IT, software & digital projects – France
- Leaders League Rankings 2023 – Technologies, internet & telecommunications – Data protection law – Law firm – France
- Guidelines 05/2021 on the Interplay between the application of Article 3 and the provisions on international transfers as per Chapter V of the GDPR