vifon, to Facebook
@vifon@mstdn.social avatar

The companies have masterfully muddled the definitions of advertisement and , making them indistinguishable for a typical person. I see the tax being compared to the Premium all the time, so let me explain the difference and why one of them is unlawful in the eyes of .

1/3

LukaszOlejnik, to random
@LukaszOlejnik@mastodon.social avatar

UK Competition and Markets Authority asked Google to delay the phaseout of third-party cookies to early 2025, the soonest. This new report considers also data protection! Finally!
Some ad industry market participants argue that Privacy Sandbox goes beyond what is needed by legal requirements when it comes to data protection. They would prefer weaker stuff. Would you believe that?

https://assets.publishing.service.gov.uk/media/662baa3efee48e2ee6b81eb1/1._CMA_Q1_2024_update_report_on_Google_Privacy_Sandbox_commitments.pdf

Tutanota, to privacy
@Tutanota@mastodon.social avatar

📣📣 Good News Alert 📣📣

The US might get their own GDPR: the American Privacy Rights Act! 🔐🇺🇸

It will strengthen protections of both Americans & people around the world. 🔐🙏🏼

More: https://tuta.com/blog/apra-is-americas-gdpr

openrightsgroup, to privacy
@openrightsgroup@social.openrightsgroup.org avatar

Changes in the UK Data Protection and Digital Information Bill will exacerbate the existing power imbalances that migrants, refugees and asylum seekers have over their data.

This will lead to significant harms and an expansion of the .

Read our briefing for more ⬇️

https://www.openrightsgroup.org/publications/briefing-how-the-dpdi-bill-harms-migrants-data-rights/

CollaboraOffice, to opensource
@CollaboraOffice@mastodon.social avatar

Collabora Online Makes Compliance Easy ⚖️

Learn about the toughest privacy law in the world and discover how ensures seamless security and collaboration.

Read Now: https://col.la/gdpr

openrightsgroup, (edited ) to Bulgaria
@openrightsgroup@social.openrightsgroup.org avatar

Weakening data protection law comes at a cost.

The European Committee on Civil Liberties, Justice and Home Affairs has issued a new warning that the Data Protection and Digital Information Bill puts the UK's adequacy agreement with the EU in question.

A move that would take chunks out of the UK economy and our data rights.

Read more ⬇️

https://www.openrightsgroup.org/press-releases/europe-warns-of-threat-to-adequacy-agreement/

openrightsgroup,
@openrightsgroup@social.openrightsgroup.org avatar

The EU LIBE Committee raises key concerns with the UK Data Protection and Digital Information Bill:

🔴 Changes to the definition of personal data.

🔴 Threats to the independence of the Information Commissioner's Office and scrapping the Biometrics and Surveillance Camera Commissioner.

🔴 International data transfers that would bypass EU rules.

openrightsgroup,
@openrightsgroup@social.openrightsgroup.org avatar

"The concerns of the LIBE committee highlights how the data rights of people in the UK will be reduced compared to people living in Europe. This should not be acceptable to our parliamentarians.”

🗣️ @marianods, ORG Legal and Policy Officer.

noybeu, to meta
@noybeu@mastodon.social avatar

⚖ We have published our first statement on the AG Opinion in C-446/21 on / - Meta must limit the use of personal data for advertisment:

👇

https://noyb.eu/en/ag-cjeu-facebook-must-minimize-personal-data-ads-eu

CollaboraOffice, to opensource
@CollaboraOffice@mastodon.social avatar

Interesting insights from Marco Nöchel, shedding light on important compliance considerations...💬

@nextcloud

image/jpeg

LukaszOlejnik, to random
@LukaszOlejnik@mastodon.social avatar

Privacy Sandbox regulatory scrutiny is the biggest (ever!) case of a privacy-competition trade-off that we've ever seen. It's so fascinating particularly to me, having done a PhD in privacy systems (real-time bidding), and LL.M. in Information Technology Law, so viewing the industry for >10 years now, from many sides.

LukaszOlejnik, to privacy
@LukaszOlejnik@mastodon.social avatar
hanscees,
@hanscees@mas.to avatar

That uses my cpu and electricity to auction adds furthermore invades my privacy in a second way. I might not have choices because they are more powerful than me. So is certainly involved. That is how I see it at first glance. I might be wrong of course (2/2)

protonprivacy, to random
@protonprivacy@mastodon.social avatar
dgoosens,
@dgoosens@phpc.social avatar

@protonprivacy

> Unless specifically mentioned otherwise, no personal information contained in this mail can be stored and/or processed ().

ian, to random

Prof. David Erdos has shared his latest (excellent) research “showing i) little UK GDPR enforcement, ii) worrying gap with formal law expectations & iii) limited accountability for this.”

A less polite version would be: the 🇬🇧 government has demonstrated how a law on the books it dislikes (the General Data Protection Regulation) can be undermined by the appointment of supine or actively hostile Information Commissioners. (As prime minister, Margaret Thatcher was against its predecessor Data Protection Directive from the start; not much has changed.)

I hope the European Commission is not going down the same route with the Digital Markets Act’s Art. 7 (on NIICS interoperability), which it was hostile to from start (early 2020) to finish (enforcement). Legislators learned from the GDPR that it is too easy for national regulators to be deliberately undermined by governments looking to attract technology firm investment (see also: Ireland and Luxembourg). The Commission therefore has a central enforcement role. So I’m especially disappointed by the flimsiness of its finally-published decision not to designate iMessage as a DMA gatekeeper NIICS. It hardly justifies the “exceptional” non-designation decision (Art. 3(5)), or “manifestly call[s] into question” the quantitative tests it meets [1]. I wonder if Meta now feels slightly foolish to have obeyed that provision in (somewhat) good faith 🫠

I still remember the jaw-dropping moment the new 🇬🇧 Information Commissioner in 2009 told a law conference (just about his first public appearance) he didn’t think data protection law should apply to the private sector. (He previously ran the advertising “self-regulatory” Advertising Standards Authority.) It’s fortunate indeed for GDPR enforcement it contains rights of private action, so effectively taken up by Max Schrems. Meanwhile, the Commission’s lack of legal action to force some member states to properly implement the legislation, enchantment with mass surveillance/data retention, and some of its adequacy decisions, are much less impressive than the Court of Justice’s judgments on Schrems’ two cases.

I was reminded last week talking to a BigTech competitor these much smaller firms have to be extremely cautious about upsetting a company they may rely on for key resources, and the Commission has spent most of its time preparing for DMA enforcement talking to those two groups. So perhaps Schrems’ None of Your Business, or something similar, will have to take up the rights of the individuals the legislation is ultimately supposed to help 🤷🏻‍♂️ Fortunately the DMA also contains rights of private action, as well as the ability of organisations to take representative actions (thanks to campaigning by consumer and digital rights groups in its final stages). As with the Schrems I and II cases, these apparently small issues can ultimately have enormous global impact [2].


[1] Where does the DMA talk about the relative intensity of use of one core platform service versus another? This provides two of three reasons for the decision! Who cares if iMessage for Business is lightly used, given it’s likely iMessage itself is used by many microbusinesses, very few of whom I imagine were part of the “corporate users of iPhone to whom the Commission reached out during the market investigation”? Really, the EC didn’t even bother with a large-scale survey, and/or demand data from Apple?

I also heard from an impeccable source Apple threatened to withdraw iMessage from the EU if it had been DMA-designated. The EC should not be rewarding such blackmail, even if it was highly likely to be a bluff.

[2] For now, we might have to rely on technology and philanthropy to improve messenger interoperability, such as this great project: a cross-platform, memory-safe OpenMLS library to enable interoperable, end-to-end encrypted messaging (E2EE) in multiple clients, combining “Matrix’s decentralized and federated infrastructure with Signal’s low metadata footprint.” 🎯

What’s happening with TikTok in the US is a strong reminder about the vulnerability of centralized platforms to censorship and surveillance. The Open Technology Fund notes Signal “provides a high level of metadata protection, but is centralized and thus easily censored. In addition, Signal cannot efficiently provide E2EE for large-group communications.” I hope Signal will move in this direction over time, as well as towards interoperability with other platforms implementing its own protocol (with metadata guarantees) as well as the IETF’s open Messaging Layer Security standard.

https://www.ianbrown.tech/2024/04/23/1874/

#BigTech #DMA #DPD #GDPR #interoperability

ronanmcd, to random
@ronanmcd@mastodon.green avatar

And then there's this GDPR warning in Webflow when you try and use a Google font. Google will track your end users' IP addresses.

LukaszOlejnik, to random
@LukaszOlejnik@mastodon.social avatar

American Privacy Rights Act is recycling the idea of Do-Not-Track. Exactly as I explained in my @wired op-ed. To function, such technical designs require legal backing. And here it is. It is still lacking in Europe's /. https://www.wired.com/story/a-second-life-for-the-do-not-track-setting/

image/png

LukaszOlejnik, to random
@LukaszOlejnik@mastodon.social avatar

I'm making a deep jump in vs (American Privacy Rights Act). It goes well beyond GDPR, and the technical implications would be substantial. Perhaps I should write down some of my observations (meanwhile, some of it becomes a non-public note).

EU_Commission, to random
@EU_Commission@social.network.europa.eu avatar

We are a Union of 27 countries and 450 million people sharing one future.

Diversity is what defines, unites us.
Diversity is also what makes us love the Fediverse.

As we mark two years on Mastodon, thank you for enlivening the conversation with insightful comments and content.

Love does not increase after the first day, but it deepens.

Let's make this journey even more engaging!

What topics did you like the most and would like to see more often 👇

Nickname,
@Nickname@mastodon.bayern avatar

@mihira @EU_Commission Yeah, it's currently really hidden, you have to click on "More share options".
At least all Social Media account that are selfhosted(by the ) or/and compliant should always be visible if any social media button is displayed at all.
Only afterwards show biggest or "More share options" button IMHO.

"More share options" Button at the bottom of EU websites.

clarinette, to Bulgaria
@clarinette@mastodon.online avatar

USING AWS, regardless of the localisation of the servers = data transfers to the U.S. https://www.privacycompany.eu/blog/update-dpia-for-surf-on-zoom-all-known-risks-solved

Jeremiah, to privacy
@Jeremiah@alpaca.gold avatar

My quick lunch read of this is that EDPB just ruled Meta’s forced consent (“pay or ok”) is a valid tactic (page 20). Prepare to pay for your right to click “deny all”. What a gross undermining of GDPR’s intent…

https://www.edpb.europa.eu/system/files/2024-04/edpb_opinion_202408_consentorpay_en.pdf

remixtures, to internet Portuguese
@remixtures@tldr.nettime.org avatar

: "Today, the EDPB has issued its first decision on "Pay or Okay" in relation to large online platforms such as Instagram and Facebook, as first reported by Politico. This decision prohibits Meta from using an unlawful consent request processing personal data. It seems that by now, Meta has run out of options to continue using people's data for advertising in the EU without a consent mechanism that actually complies with the law."
https://noyb.eu/en/statement-edpb-pay-or-okay-opinion

edri, to random
@edri@eupolicy.social avatar

In the latest , we draw your attention to:

🇬🇷 Record-high fine for Greece's Migration Ministry
🇪🇺 @europarl_en vote in favour of discriminatory
💰Meta's harmful push to charge for privacy
& more!

Read up & share: https://edri.org/our-work/edri-gram-17-april-2024/

chuso, to TierraSapiens Spanish
@chuso@mastodon.social avatar

El Comité Europeo de Protección de Datos dice que pedir una suscripción de pago para no ser rastreado como hace Meta para Facebook e Instagram no cumple la GDPR: https://www.edpb.europa.eu/news/news/2024/edpb-consent-or-pay-models-should-offer-real-choice_en

Frederik_Borgesius, to privacy

Dutch public broadcaster website on the 'pay or consent' guidance by the European Data Protection Board (EDPB).

https://nos.nl/artikel/2517179-privacywaakhonden-meta-mag-gebruikers-niet-dwingen-zich-te-laten-volgen

#privacy #dataprotection #law #economics #gdpr #surveillance

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • tester
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • tacticalgear
  • osvaldo12
  • normalnudes
  • cubers
  • cisconetworking
  • everett
  • GTA5RPClips
  • ethstaker
  • Leos
  • provamag3
  • anitta
  • modclub
  • lostlight
  • All magazines