News & Analysis as of

Data Protection Enforcement Actions Regulatory Violations

DLA Piper

Uganda: Data Protection Regulator Clarifies Compliance Requirements for Offshore Entities

DLA Piper on

In a decision issued on 18 July 2025 against Google LLC, the Personal Data Protection Office (PDPO) has affirmed that the data protection compliance obligations under Ugandan law apply to all entities that handle the personal...more

Robinson+Cole Data Privacy + Security Insider

California AG Announces CCPA Compliance Efforts

The Office of the California Attorney General recently announced that it will initiate an investigative sweep and will start sending letters to businesses about their mobile apps for failure to comply with the California...more

Robinson+Cole Data Privacy + Security Insider

France Fines Discord under GDPR

The French data privacy authority (DPA) announced that it will fine Discord, Inc. 800,000 euros under the General Data Protection Regulation (GDPR). Discord is a social messaging platform popular with gamers, technology...more

Polsinelli

When the Feds Find Out! Lack of Data Security Leads to Novel and Hefty Settlements

Polsinelli on

The Federal Government continues ramping up enforcement of data security requirements by deploying significant new enforcement theories and tools in support of cyber and data security controls required by federal law....more

Robinson+Cole Data Privacy + Security Insider

FTC Files Suit Against CafePress for “Data Breach Cover Up”

The Federal Trade Commission (FTC) issued a press release on March 15, 2022, stating that it was taking action against CafePress “over allegations that it failed to secure consumers’ sensitive personal data and covered up a...more

Wyrick Robbins Yates & Ponton LLP

Worth the Wait? Key Takeaways from California Attorney General CCPA Enforcement Case Summaries

Before the CCPA became enforceable on July 1, 2020, much ink was spilled (or many keys were hit) about the California Office of the Attorney General’s (“OAG”) ability to obtain civil penalties for CCPA violations. After that...more

Robinson+Cole Data Privacy + Security Insider

Twitter fined $546,000 in December 2020 by European Data Protection Authority for 2019 Breach Notification Violations

The Irish Data Protection Commission (DPC) fined Twitter 450,000 euros (about US$546,000) for failing to timely notify the Irish DPC within the required 72 hours of discovering a Q4 2018 breach involving a bug in its Android...more

Orrick, Herrington & Sutcliffe LLP

Highest Administrative Court in France Upholds Google’s €50 Million Fine

On January 21, 2019, the CNIL (the French data protection authority) issued a fine of €50 million to Google under the General Data Protection Regulation (the “GDPR”) for its failure to (1) provide notice in an easily...more

Orrick, Herrington & Sutcliffe LLP

ICO Fines: When Is An Appeal Appealing?

The decision to appeal a regulatory finding is never taken lightly. By the time a regulator has completed its investigation and notified a company of its intention to fine, the company will have invested significant time and...more

Orrick, Herrington & Sutcliffe LLP

German regulator issues record fine for keeping personal data too long

The Data Protection Supervisory Authority for the state of Berlin (Die Berliner Beauftragte für Datenschutz und Informationsfreiheit, “Supervisory Authority”) recently issued a fine for GDPR violations against Germany’s...more

BCLP

France’s first GDPR fine costs real estate company Euros 400k

BCLP on

The French CNIL imposed a €400,000 fine on a company specialized in real estate development, purchase, sale, rental and property management, for failing to adequately protect the data of users of its website and for...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

A GDPR Update for Employers, Part IV: Implementing Lessons Learned From GDPR Complaints and Enforcement Actions

Much has happened since the European Union (EU) General Data Protection Regulation (GDPR) went into effect on May 25, 2018. Many EU countries have enacted national legislation to implement and expand the requirements of the...more

Herbert Smith Freehills Kramer

Google’s Fine and the French Data Protection Authority’s Far-reaching GDPR Compliance Measures

On Jan. 21, 2019, the French Data Protection Authority (CNIL) levied a 50 million euros sanction against Google  LLC for violating the EU General Data Protection Regulation2 (GDPR) in the context of the first enforcement...more

Hogan Lovells

GDPR Enforcement Update: Increasing Fines Expected from German DPAs

Hogan Lovells on

Many companies have been struggling with GDPR implementation over the past two years, putting much effort into new roles, privacy concepts, and workflows. ...more

Orrick, Herrington & Sutcliffe LLP

Google To Pay $57 Million For GDPR Violations

On January 21, 2019, the French data protection supervisory authority (“CNIL”) fined Google €50 million (approximately $57 million) for violating the European General Data Protection Regulation (“GDPR”). ...more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Client Alert | February 2019

Google Receives Record GDPR Fine - Marking the first major penalty against a U.S. tech company under the General Data Protection Regulation (GDPR), the French data-protection authority, CNIL, has fined Google a record $57...more

Dorsey & Whitney LLP

Google Fine Signals GDPR Enforcement Priorities and Complexities

Dorsey & Whitney LLP on

The French Data Protection Authority, CNIL, has fined Google $50 Million Euros for Google’s alleged failure to comply with the EU’s sweeping General Data Protection Regulation (GDPR). The enforcement action is significant for...more

Robinson+Cole Data Privacy + Security Insider

Google Fined $57M by French Data Protection Authority for Alleged Violations of GDPR

France’s data protection authority (DPA) (CNIL) recently announced that it has fined Google $57 million for violations of the General Data Protection Regulation (GDPR). This is the first fine by a European DPA of an American...more

Polsinelli

U.K. Information Commissioner’s Office Imposes Maximum Fine on Facebook

Polsinelli on

The U.K. Information Commissioner’s Office announced it will impose the maximum fine of $660,000 for Facebook’s breach of the U.K. Data Protection Act (see Notice of Intent). ...more

Ballard Spahr LLP

HIPAA Enforcement: Where’s the Action?

Ballard Spahr LLP on

Imagine a breach in the privacy of protected health information.  The violation of an individual’s HIPAA rights may be clear, but the individual cannot sue under HIPAA.  Courts have consistently held that HIPAA provides no...more

20 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide