On the 5 of June 2018, the Court of Justice of the European Union (CJEU) in Case C-201/16 judged that the Administrator of a Facebook’s Fan Pages is jointly responsible with Facebook for its processing of personal data of the visitors of the page. This judgment is important since it determines the data protection responsibilities […]
Read MoreThe territorial scope of the GDPR
The GDPR material scope refers to the activities that are within or outside the scope of the instrument, and it is stated in Art.2. The GDPR territorial scope refers to the application of the regulation to organisations within and outside the EU*, and it is stated in Art.3. To be accurate regarding the full applicability of […]
Read MorePenalties under the GDPR
On the 25th May 2018, many EU countries were not ready for the implementation of the GDPR -despite having two years of preparation. As you can imagine, many in the private sector are not prepared either. Thus, this article explores what provisions, if breached, are addressed as serious, with the imposition of the higher administrative […]
Read MoreUse of Web Analytical Tools under the GDPR and ePrivacy Directive
Nowadays, most organisations and businesses use web analytics tools. And in fact, the concern is not the use of these tools, is how they work, since they use cookies or similar technologies require consent before any processing takes place. WHAT IS A WEB ANALYTICAL TOOL? “A web analytical tool refers to a combination of (a) […]
Read MoreConsent for Tracking Purposes
This article explores the use of consent to store information or access to storage of information on an end user’s terminal equipment. However, keep in mind that the last amendments to the ePrivacy Directive analyses other grounds for data processing, other than consent. WHAT IS CONSENT? Consent is a legal base by which a person can agree […]
Read MoreRights of Data Subjects under the GDPR
All-natural persons whose personal data is processed by a Data Controller (DC) or Data Processor (DP) within the territorial scope of the GDPR, are Data Subjects and hence entitled to these rights. The DC is responsible for allowing data subjects to exercise their rights and to ensure that they can make effective use of them. […]
Read MorePrinciples for the Processing of Personal Data under the GDPR
The principles are set in article 5 of the GDPR and enshrined thorough all the Regulation, and they apply to every personal data processing activity. As the cornerstone of the Regulation, they should be kept in mind when interpreting the rights and duties established in the GDPR. Lawfully, Fairly and Transparent Lawfully refers to […]
Read MoreWho is the Data Processor and what are its responsibilities under the GDPR?
. The data processor (DP) is the one that processes personal data for the account, on instruction and under the authority of the Data Controller (DC)-other than the employee of the DC. It can be a natural or legal person, public authority, agency or another body.
Read MoreWho is the Data Controller and what are its responsibilities under the GDPR?
The Data Controller (“DC”) is the one who, alone or jointly, determines the purpose and means of the processing of personal data; in other words, is the one who decides why other’s personal data is processed and how it would be processed; therefore, is regulated under the GDPR and it is abided by its rules. […]
Read MoreData Protection Solutions under the GDPR
To secure data from internal and external threats, article 32 of the GDPR, provides the following points to be considered in choosing a data protection solution: The state of the art refers to the latest technology available; The cost of implementation refers to the price to use such data security. The best solution will not […]
Read More