PrivacySignal
Enforcement

Grindr settles privacy lawsuit tied to disclosure of users’ HIV statuses for $35 million

The Record · · International · Enforcement

Grindr has agreed to a $35 million settlement with UK users who sued the dating app over claims it shared their HIV status data without proper consent, in violation of British privacy law. The lawsuit was filed in April 2024.

Why this matters: HIV status is about as sensitive as personal information gets. People share it on a platform like Grindr because the app is built around that trust. When that data moves to third parties, the consequences are not abstract. They can affect jobs, relationships, insurance, and safety. A $35 million settlement sounds significant. For a company that monetized intimate health data, it is worth asking whether that number actually changes how the business treats the next piece of sensitive information it collects.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Enforcement
EFF — Deeplinks · · International

Cops Play Hide and Seek About Using Spy Tech to Avoid Scrutiny and Bad PR

Police departments across the United States are actively concealing their use of surveillance tools — including license plate readers, cell-site simulators, and facial recognition — by instructing officers to omit these technologies from reports and structuring records to evade public disclosure requests.

Who should care: Lawyers · Privacy officers · Compliance · Cybersecurity · General readers · Policy

#enforcement#surveillance#privacy Read original →
Enforcement
N News4JAX · · International

Netflix lawsuit: Florida AG alleges streaming giant tracked kids, broke data privacy promises

Florida's Attorney General has filed a lawsuit against Netflix, alleging the company tracked children's data and violated its own privacy commitments to users. The suit centers on claims that Netflix broke promises it made about how it handles personal information.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#enforcement#privacy Read original →
Enforcement
HIPAA Journal · · US Federal

FBI Raises Alarm About OAuth Consent Phishing Activity

The FBI has issued a public warning about an active phishing campaign that exploits OAuth consent flows, a legitimate authorization mechanism used across countless apps and services. The technique is sophisticated enough to warrant a formal federal alert.

Who should care: Lawyers · Privacy officers · Compliance · Healthcare professionals · General readers · Policy

#enforcement#healthcare#privacy#security Read original →
Enforcement
CNIL · · EU / France

Failure to respect the rights of individuals: EUR 300,000 fine against EXTIA

France's data protection authority, the CNIL, fined consulting firm EXTIA €300,000 for failing to respect individuals' rights under data protection law. The penalty reflects a formal finding that the company did not meet its legal obligations toward the people whose data it held.

Who should care: Lawyers · Privacy officers · Compliance

#enforcement Read original →
Enforcement
The Guardian — Tech · · International

Trump administration to confront Australia over Labor’s social media algorithm plan

The Trump administration plans to challenge Australia's proposed digital platform rules, which would require social media companies to remove harmful content, give users the ability to opt out of algorithmic feeds, and expose platforms to fines exceeding $100 million for violations.

Who should care: Lawyers · Privacy officers · Compliance · AI governance · Administrators · General readers · Policy

#enforcement#ai-governance#ai#privacy Read original →
Enforcement
EFF — Deeplinks · · International

New Records Reveal Problems with Medicare’s AI Prior Authorization Experiment

Roughly 1,000 pages of federal records released by the Electronic Frontier Foundation, obtained through litigation against CMS, reveal that Medicare's AI-driven prior authorization program, WISeR, has produced widespread delays and denials of medical care. The documents include contracts with tech companies, internal status reports, and complaints from healthcare providers about the program's performance.

Who should care: Lawyers · Privacy officers · Compliance · General readers · AI governance · Policy

#enforcement#ai Read original →