PrivacySignal
GDPR / Intl

UK ICO finds police facial recognition use mostly compliant with data regulations

Biometric Update · · International · GDPR & International

The UK's Information Commissioner's Office reviewed police use of facial recognition technology and found it to be largely compliant with data protection law. The assessment stops short of a full endorsement but does not identify systemic violations.

Why this matters: A regulator saying something is 'mostly compliant' is not the same as saying it is safe or fair. Facial recognition used by police misidentifies people at higher rates if you are a woman or have darker skin. Compliance with data rules does not fix that. It also does not answer whether the surveillance itself is proportionate. The ICO's job is to check whether data is handled correctly, not whether the underlying practice should exist. Those are different questions, and only one of them got answered here.

Who should care: Lawyers · Privacy officers · AI governance · Compliance · Cybersecurity · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

The Attacker Did Not Need to Sleep

Spain received its first reported personal-data breach carried out by an AI agent. The techniques were familiar. The speed and autonomy were not.

· 4 min read Read →

Related stories

GDPR / Intl
Information Commissioner's Office · · UK

ICO welcomes transition to new Information Commission and marks new chapter with Manchester head office opening

The UK's Information Commissioner's Office is transitioning to a newly structured Information Commission and has opened a head office in Manchester, marking an institutional shift in how the country's data protection authority is organized.

Who should care: Lawyers · Privacy officers · AI governance

GDPR / Intl
ICO · · UK

ICO head office address change

The UK's Information Commissioner's Office has announced a change to its head office address.

Who should care: Lawyers · Privacy officers · AI governance

GDPR / Intl
O Ogletree · · International

Deployment of AI Recruitment Tools in the EU: Employer Obligations Under GDPR and EU AI Act

Employers in the EU using AI-powered recruitment tools face obligations under both GDPR and the EU AI Act, which together impose rules on how candidate data is collected, processed, and used in automated hiring decisions.

Who should care: Lawyers · Privacy officers · AI governance · Administrators · General readers · Policy

#gdpr#ai-governance#ai Read original →
GDPR / Intl
T The National Law Review · · International

Amendments to Delaware’s Consumer Privacy Law Deepen the Morass of State Privacy Regulation

Delaware has amended its consumer privacy law, adding new layers to an already complex patchwork of state-level privacy rules across the United States. The changes make compliance more complicated for companies operating in multiple states.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#state-privacy#regulation#privacy Read original →
GDPR / Intl
SCOTUSblog · · US Federal

Trump blasts Supreme Court on social media

President Trump publicly criticized the Supreme Court on social media, while Attorney General Todd Blanche indicated the administration is planning further action on mail-in voting.

Who should care: Lawyers · Privacy officers · Compliance

#state-privacy Read original →