PrivacySignal
GDPR / Intl

EDPB and AMLA to develop Joint Guidelines on partnerships for information sharing

EDPB · · EU · GDPR & International

The European Data Protection Board and the newly established Anti-Money Laundering Authority have announced a joint effort to develop guidelines on how financial institutions can share customer information to fight money laundering and terrorist financing without violating data protection rules. The collaboration stems from an explicit provision in the EU's AML Regulation allowing such information exchanges.

Why this matters: Banks and financial firms already collect enormous amounts of personal data. Now there is a formal EU push to make it easier for them to share that data with each other, all in the name of fighting financial crime. That is a legitimate goal. But bulk information sharing between institutions is exactly the kind of arrangement that can quietly erode financial privacy for ordinary people who are not suspected of anything. The joint guidelines will determine how much protection actually survives in practice. Watch what the rules say about consent, purpose limits, and who can be swept in.

Who should care: Lawyers · Privacy officers · AI governance · Compliance · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

The Attacker Did Not Need to Sleep

Spain received its first reported personal-data breach carried out by an AI agent. The techniques were familiar. The speed and autonomy were not.

· 4 min read Read →

Related stories

GDPR / Intl
Information Commissioner's Office · · UK

ICO welcomes transition to new Information Commission and marks new chapter with Manchester head office opening

The UK's Information Commissioner's Office is transitioning to a newly structured Information Commission and has opened a head office in Manchester, marking an institutional shift in how the country's data protection authority is organized.

Who should care: Lawyers · Privacy officers · AI governance

GDPR / Intl
ICO · · UK

ICO head office address change

The UK's Information Commissioner's Office has announced a change to its head office address.

Who should care: Lawyers · Privacy officers · AI governance

GDPR / Intl
O Ogletree · · International

Deployment of AI Recruitment Tools in the EU: Employer Obligations Under GDPR and EU AI Act

Employers in the EU using AI-powered recruitment tools face obligations under both GDPR and the EU AI Act, which together impose rules on how candidate data is collected, processed, and used in automated hiring decisions.

Who should care: Lawyers · Privacy officers · AI governance · Administrators · General readers · Policy

#gdpr#ai-governance#ai Read original →
GDPR / Intl
T The National Law Review · · International

Amendments to Delaware’s Consumer Privacy Law Deepen the Morass of State Privacy Regulation

Delaware has amended its consumer privacy law, adding new layers to an already complex patchwork of state-level privacy rules across the United States. The changes make compliance more complicated for companies operating in multiple states.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#state-privacy#regulation#privacy Read original →
GDPR / Intl
SCOTUSblog · · US Federal

Trump blasts Supreme Court on social media

President Trump publicly criticized the Supreme Court on social media, while Attorney General Todd Blanche indicated the administration is planning further action on mail-in voting.

Who should care: Lawyers · Privacy officers · Compliance

#state-privacy Read original →