Data protection

Thinking - Snapshot

ICO publishes contact tracing guidance

Published on 02 November 2020. By David Cran, Partner, Head of Disputes

Read more
Thinking - Snapshot

The EECC, the ePD and the GDPR – a complex interplay creating a breach notification nightmare for providers of communications services

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

What impact will the implementation of the new Directive establishing the European Electronic Communications Code (2018/1972) (EECC) have on the scope and application of the ePrivacy Directive (2002/58/EC) (ePD) for providers of electronic communication services?

Read more
Thinking - Snapshot

H&M hit with €35.3m fine for GDPR employee breach

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

How did H&M’s internal data collection processes land it with the second largest fine in data breach history?

Read more
Thinking - Snapshot

ICO publishes guidance on AI decision making

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

How can companies comply with data regulation when using AI to make decisions affecting individuals?

Read more
Thinking - Snapshot

Schrems II where next for data transfers

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

Read more
Thinking - Snapshot

Damages for distress for failing to verify personal data

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

Read more
Thinking - Snapshot

EU social media targeting guidelines – call for feedback

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

Who are the key actors in the targeting of social media users, and what can they learn from the EU's new social media targeting guidelines?

Read more
Thinking - Snapshot

EU Commission looks to new SCCs by the end of 2020

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

Read more
Thinking - Snapshot

DMA issues “Seven-Step Ad Tech Guide” in a bid to restore trust in online advertising

Published on 02 November 2020. By Oliver Bray, Partner, Technology, Media & Entertainment Lead

What needs to be done by UK businesses actively engaged in the programmatic delivery of digital advertising to ensure they protect the rights of individuals?

Read more
Thinking - Snapshot

Data regulation and oral communications

07 August 2020

David Scott v LGBT Foundation Ltd [2020] EWHC 483 (QB) (3 March 2020)

Read more
Thinking - Snapshot

European Commission and EDPB lay out framework for privacy compliant contact tracing apps

07 August 2020

How do we balance the need for contact tracing with data protection regulation?

Read more
Thinking - Snapshot

COVID-19 testing and monitoring in the workplace

07 August 2020

Can employers test and monitor employees during the COVID-19 pandemic?

Read more
Thinking - Snapshot

ICO outlines priorities and regulatory approach during the coronavirus public health emergency

07 August 2020

How has the ICO reshaped its priorities for regulating UK data protection during COVID-19?

Read more
Thinking - Snapshot

ICO issues guidance on artificial intelligence: explaining the “black box”

07 August 2020

What steps do businesses need to take to comply with the ICO’s new guidance on artificial intelligence?

Read more
Thinking - Snapshot

Government publishes approach to post-Brexit trade deal with the EU

07 August 2020

What is the Government’s approach to a post-Brexit trade deal with the EU?

Read more
Thinking - Snapshot

WM Morrison Supermarkets plc v Various Claimants – Supreme Court rules on vicarious liability for unlawful disclosure of personal data by rogue employee

07 August 2020

Can an employer be held vicariously liable for the actions of a rogue employee leaking data?

Read more
Thinking - Snapshot

Ashley Judith Dawson-Damer v Taylor Wessing LLP – Court of Appeal rules on legal professional privilege and “relevant filing system” in subject access dispute

07 August 2020

Do paper files constitute a “relevant filing system” for the purposes of subject access requests (SARs)? Can legal professional privilege (LPP) be used to block a SAR made by a data subject that is owed a duty of “joint privilege” along with the lawyer’s primary client?

Read more
Thinking - Snapshot

GDPR Codes of Conduct and Certification schemes – the ICO is “open for business”

07 August 2020

What is the ICO doing to make it easier for industry specific sectors to comply with GDPR? What is the benefit to businesses in adopting accredited codes of conduct?

Read more
Thinking - Snapshot

Continuing the free flow of personal data between the EU and the UK post-Brexit: DCMS Explanatory Framework for adequacy discussions

07 August 2020

How might the Explanatory Framework recently published by the Department for Digital, Culture, Media & Sport (DCMS) assist with enabling the continued free flow of data between the EU and the UK post-Brexit and how might the UK Government’s approach to the COVID-19 pandemic affect this?

Read more
Thinking - Snapshot

Cookie walls and scrolling – updated EDPB guidance

07 August 2020

Are cookie walls permissible? Can scrolling through a website constitute “consent”?

Read more
Thinking - Snapshot

CJEU's CCTV ruling: guidance on legitimate interests processing

02 June 2020

Case C-708/18 TK v Asociaţia de Proprietari bloc M5A-ScaraA EU:C:2019:1064

Read more
Thinking - Snapshot

EPDB guidelines: Data Protection by Design and by Default

02 June 2020

How familiar are you with the obligations in the GDPR to protect personal data by design and default (DPbDD)? And what practical measures can you take to help ensure compliance?

Read more
Thinking - Snapshot

Schrems II - Advocate General's Opinion

02 June 2020

Case C-311/18 Data Protection Commissioner v Facebook Ireland Ltd

Read more
Thinking - Snapshot

ICO issues monetary penalty notice against Cathay Pacific for data breach

02 June 2020

When is the ICO likely to impose its maximum fine for a data breach?

Read more
Thinking - Snapshot

ICO monetary penalty notice against DSG Retail Ltd for data breach

02 June 2020

What factors did the ICO take into account when issuing the maximum £500,000 penalty (under the old Data Protection Act) against DSG for a data security breach relating to its Point of Sale (POS) payment terminals?

Read more

Stay connected and subscribe to our latest insights and views 

Subscribe Here