PrivacySignal
GDPR / Intl

EDPS publishes Opinion on proposed EUDPR amendments

EDPS · · EU · GDPR & International

The European Data Protection Supervisor has issued a formal Opinion on the European Commission's proposed changes to the EU Data Protection Regulation, the law that governs how EU institutions handle personal data internally. The EUDPR applies specifically to the Union's own bodies and agencies, not to member states.

Why this matters: Most privacy coverage focuses on rules that apply to companies or national governments. This one is about the EU's own house. The EUDPR is the rulebook for how Brussels handles your data when you deal with EU institutions directly. When the Commission proposes changes to that rulebook, the EDPS acts as the independent check. Its Opinion tells you whether the proposed changes tighten protections or quietly loosen them. That matters for anyone whose data flows through EU agencies, which is more people than most realize.

Who should care: Lawyers · Privacy officers · AI governance · Compliance · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

GDPR / Intl
noyb (None of Your Business) · · EU

Open Letter: Civil society coalition urges EU to kill the cookie banner!

A coalition of 19 civil society groups, businesses, and academics has published an open letter urging EU institutions to support legally binding automated privacy signals as part of the Digital Omnibus package — a mechanism that would let people set privacy preferences once instead of clicking through cookie banners repeatedly. The tracking industry is opposing the proposal.

Who should care: Lawyers · Privacy officers · AI governance · Cybersecurity · General readers · Policy

#gdpr#surveillance#privacy Read original →
GDPR / Intl
The Guardian — Privacy · · International

Online bookies accused of UK privacy breaches with use of cookie banners

A study found that 86% of licensed UK gambling websites appear to be violating GDPR by nudging users toward accepting tracking, and in many cases harvesting data before any consent is given. The research accuses the industry of widespread non-compliance and what it describes as systematic data surveillance of customers.

Who should care: Lawyers · Privacy officers · AI governance · Compliance · Cybersecurity · General readers · Policy

#gdpr#regulation#surveillance#privacy Read original →
GDPR / Intl
W WilmerHale · · International

Washington Attorney General Publishes First Data Privacy Report

Washington's Attorney General has released the office's first report focused on data privacy, marking a new phase of public accountability for how the state enforces privacy protections.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#state-privacy#privacy Read original →
GDPR / Intl
noyb (None of Your Business) · · EU

Supreme Court: CRIF illegally collected data of millions in Austria. Way clear for class action!

Austria's Supreme Court has ruled that credit reference agency CRIF violated GDPR's purpose limitation principle by collecting personal data from address publishers without a lawful basis. The decision, secured before a full hearing, strengthens a parallel class action brought by privacy group noyb on behalf of millions of affected Austrians.

Who should care: Lawyers · Privacy officers · AI governance