Privacy GDPR Russia
4.63K subscribers
1.57K photos
56 videos
321 files
2.78K links
О приватности с душой и со вкусом. При поддержке RPPA.pro, под контролем Крис, @krakozubla. Мы создаем контент, а не копируем🩵

RPPA.pro | PPCP.pro | EDPC.network
Download Telegram
August 2, 2022
Denis_Sadovnikov_IV_Data_protection_Authorities.pdf
15.6 MB
August 3, 2022
#materials #fines #privacy

С просторов Linkedin - калькулятор рассчета стартовой суммы штрафов за нарушения GDPR - DeFine, учитывающий, в тч EDPB методологию.

💬Источник: Екатерина Калугина
August 4, 2022
August 5, 2022
Rosenthal-LA-method-FAQ.pdf
3.1 MB
August 5, 2022
#НеДляГалочки #podcast

🎙Реформа закона о персональных данных 2022 — как жить с новыми требованиями?

14 июля 2022 года был принят Федеральный закон № 266-ФЗ, которым внесены существенные изменения в Закон о персональных данных (№ 152-ФЗ). В этом выпуске обсуждаем самые горячие и сложные вопросы в связи с изменениями:

🔥 Экстерриториальное действие закона: как иностранные компании будут исполнять его требования [2:00]
🔥 Трансграничная передача: новые правила об уведомлении РКН и проверке контрагента [16:10]
🔥 Уведомления об утечках: будет ли работать новый порядок на практике [40:18]
🔥 ГосСОПКА: что это такое и надо ли всем туда подключаться [54:05]

Ведущие выпуска:
🤩 Приглашенная privacy-звезда — Алексей Мунтян, со-основатель RPPA, фаундер фирмы Privacy Advocates
Ирина Шурмина, SEAMLESS Legal (ex-CMS)
Кристина Боровикова, со-основатель RPPA, Kept
Ксения Андреева, Morgan Lewis
Елизавета Дмитриева, data privacy engineer в российском инхаусе

🧸Благодарим всех за поддержку и призываем писать нам отзывы, пожелания и предложения!

Apple | Yandex
August 5, 2022
August 5, 2022
Forwarded from Privacy Advocates (Alexey Muntyan)
This media is not supported in your browser
VIEW IN TELEGRAM
August 8, 2022
August 10, 2022
August 10, 2022
August 11, 2022
#PrivacyNews

Свежачок от Олега Блинова

🔸 Facebook avoids a service shutdown in Europe for now (https://techcrunch.com/2022/08/11/facebook-europe-shut-down-delay/)

As was probably predictable, the Irish regulator received objections to their intention to shutdown FB for transfer of data to the US. It is likely that the internal discussions and dispute resolutions will take months and months.

🔸France: CNIL proposes €60M fine against Criteo for non-compliance with GDPR (https://www.dataguidance.com/news/france-cnil-proposes-60m-fine-against-criteo-non)

Very little is actually clear from the news. From my short review of the 2018 complaint of an activist group, it seems the applicant (and later CNIL) allege that AdTech data brokerage should rely on consent due to cross-tracking. Relevant for fb and TCF-based data sharing.

🔸 EU: NOYB lodges 226 complaints against websites’ cookie banner settings (https://www.dataguidance.com/news/eu-noyb-lodges-226-complaints-against-websites-cookie)

Another case of NOYB activism.

🔸 IP (Slovenia) - 0612-23/2019/19 (https://gdprhub.eu/index.php?title=IP_(Slovenia)_-_0612-23/2019/19) (kudos @actuaris)

From the description of the case it may appear that the vendor fulfilled a completely technical role of providing integrations for data transmission. However, the DPA found that because clients had no power to ensure technical compliance with the GDPR, the cloud computing provider was acting as controller. Hence, the parties had to sign a JC agreement. No fine imposed.
August 12, 2022
Privacy Jobs.pdf
593.5 KB
August 16, 2022
August 17, 2022
August 17, 2022
August 17, 2022
August 17, 2022
August 18, 2022
August 19, 2022
#PrivacyNews

Подборка новостей из мира зарубежной приватности от Олега Блинова:

🔸 France: CNIL fines Accor €600,000 for various direct marketing violations (https://www.dataguidance.com/news/france-cnil-fines-accor-600000-various-direct-marketing). People making reservations with Accor hotels are automatically added to a newsletter containing commercial offers due to a pre-ticked consent box. CNIL found Accor responsible for violating the obligation to obtain consent of the data subject to process personal data for direct marketing purposes, according to Article L. 34-5 of the Code.

🔸 Italy: Garante fines UniCredit €70,000 for failing to satisfy data subject access request (https://www.dataguidance.com/news/italy-garante-fines-unicredit-70000-failing-satisfy). UniCredit did not satisfy the data subject access request of the complainant. UniCredit stated that no response had been given because they had not filing the data request form on the bank’s Privacy Portlet. The DPA responded that preparation of a form may constitute an organisational modality aimed at facilitating the interested parties, but should not be a condition for a valid request.

🔸 Australia: Federal Court imposes $60M fine on Google LLC for misleading consumers (https://www.dataguidance.com/news/australia-federal-court-imposes-60m-fine-google-llc) Google was in breach of the Australian Consumer Law by representing to Android users that the setting titled ‘Location History’ was the only Google account setting that affected whether Google collected, kept, and used personal location data, where in fact, another Google account setting titled ‘Web & App Activity’ also enabled Google to collect the same.
August 19, 2022
August 19, 2022