PrivacySignal
GDPR / Intl

EDPB calls for legal basis for cross-regulatory information sharing

EDPB · · EU · GDPR & International

At a July 2026 meeting in Dublin, the European Data Protection Board called for an explicit legal foundation governing how data protection authorities share information with regulators outside their jurisdiction. The EDPB also discussed deepening cooperation among DPAs to strengthen consistent GDPR enforcement across the EU.

Why this matters: Right now, privacy regulators and other regulators — think competition, financial, or AI oversight bodies — often cannot cleanly share what they know about the same company. That gap lets problems fall between agencies. The EDPB wants a legal framework that closes it. This matters because enforcement is only as strong as coordination. If a company's data practices touch multiple regulators but none of them can fully talk to each other, accountability gets diffuse and companies benefit from the confusion. A clear legal basis for sharing changes that.

Who should care: Lawyers · Privacy officers · AI governance · Compliance · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

GDPR / Intl
BBC — Tech · · International

Reform of all social media should come with Meta changes, UN says

The United Nations has called for broad social media reform to accompany any changes made to Meta's platforms, framing child safety and platform accountability as an industry-wide issue. Separately, California's attorney general is pressing TikTok and YouTube to adopt teen safety measures.

Who should care: Lawyers · Privacy officers · Compliance

#state-privacy Read original →
GDPR / Intl
New York Times — Tech · · International

Prediction Markets and States Clashed, Setting Off a Furious Political Battle

A legal battle over the regulatory status of prediction markets like Kalshi and Polymarket has escalated into a broad political fight, drawing in the Trump administration, a member of the president's family, and attorney generals from nearly every state.

Who should care: Lawyers · Privacy officers · Compliance

#state-privacy Read original →
GDPR / Intl
noyb (None of Your Business) · · EU

‘Shadow database’ scandal: noyb sends SCHUFA cease-and-desist letter; interest list for class action opened

German privacy group noyb has sent a cease-and-desist letter to credit agency SCHUFA after investigations revealed it retained millions of records that should have been deleted, and used them for customer testing. Noyb has opened an interest list for a class action, with up to 69 million people potentially affected.

Who should care: Lawyers · Privacy officers · AI governance

GDPR / Intl
C Computing UK · · International

ICO: Police facial recognition needs stronger oversight

The UK's Information Commissioner's Office has called for stronger oversight of how police use facial recognition technology, signaling concern that current controls are insufficient to govern the practice.

Who should care: Lawyers · Privacy officers · AI governance · Cybersecurity · General readers · Policy

#gdpr#surveillance#privacy Read original →
GDPR / Intl
C Computer Weekly · · International

ICO police facial recognition audits reveal ‘mixed’ bag

The UK's Information Commissioner's Office conducted audits of police use of facial recognition technology and found inconsistent results across the forces reviewed. The findings suggest compliance and practice vary significantly, with no uniform standard being met.

Who should care: Lawyers · Privacy officers · AI governance · Cybersecurity · General readers · Policy

#gdpr#surveillance#privacy Read original →