Employees judicial data can be processed only with express authorization by law or Agency, Italian DPA says

On June 15, 2017, the Italian Data Protection Authority, Garante per la Protezione dei Dati Personali, rejected the request of an Italian service company to be authorized to process its employees’ judiciary data because of lack of an adequate legal basis. The Italian company was looking to process the judiciary information of its employees to allegedly […]

Tags: ,

Time is an important factor in assessing a request to be forgotten, but it isn’t the only one, Italian DPA reminds

On June 15, 2017, the Italian Data Protection Authority, Garante per la protezione dei dati personali, highlighted how time is not the only factor to consider when asking to be forgotten. There are additional circumstances that have to be considered, like for example, the public right to information. In this case, a senior public official […]

Tags:

Conseil d’Etat requests preliminary ruling from CJEU on Right to be Forgotten

The right to be forgotten has been judicially recognized by the CJEU with the Google Spain judgment  (Case C-131/12). According to the judgement, Europeans have the right to disappear from search engine’s results under certain conditions. The National Commission of Information Technologies and Liberties (CNIL), Commission nationale de l’informatique et des libertés, rejected some complaints […]

Tags: ,

Mass publication of personal tax information can be banned, the ECHR holds

On June 27, 2017, the Grand Chamber of the European Court of Human Rights (“ECHR”) issued its judgment in the case of Satakunnan Markkinapörssi Oy and Satamedia Oy v. Finland (application no. 931/13) holding that the publication of personal tax information does not violate Article 10 (freedom of expression) of European Convention on Human Rights. […]

Tags:

Italian court voids share purchase agreement due to unauthorized use of digital signature

On December 20, 2016, the Tribunale di Roma held the unauthorized use of a digital signature smart card could nullify an electronically signed agreement. In this case the Plaintiff had denied the digital subscription of an agreement that transferred stock ownership. Since the share transfer agreement was signed electronically, the judge found that the Codice dell’Amministrazione […]

Criminal defendants don’t have an absolute right to have their data omitted from published decisions, Italian Supreme Court held

On February 15, 2017, the Corte di Cassazione, the Italian Supreme Court, refused to hold that every criminal defendant has a right to have his or her personal data deleted from a published decision. The court must evaluate each case to determine if it is appropriate to omit certain personal data. The Supreme Court clarified the terms under which […]

Tags:

Facebook user ordered by DPA to remove posts referring to judgments containing data of minor

On February 23, 2017, the Garante per la Protezione dei Dati Personali, the Italian Data Protection Authority (DPA), ordered a mother to delete from her Facebook feed posts containing two  judgments that include private aspects of her family’s life and most of all her daughter’s life. The DPA noted that the posted judgments allowed the identification of the […]

Tags:

Canadian privacy law (PIPEDA) applies extraterritorially, Federal Court of Canada holds

On January 30, 2017, the Federal Court of Canada found Globe24h.com, a Romanian based website and its sole owner and operator, in violation of the Personal Information Protection and Electronic Documents Act (PIPEDA). By way of background, the Romanian based website indexed and reposted Canadian court and tribunal decisions that were also available on Canadian legal […]

Tags:

ECJ holds dynamic IP addresses are personal data if additional information allowing user identification can reasonably be obtained from third parties

On October 19, 2016, the European Court of Justice (“ECJ”) presented its conclusions in Patrick Breyer v. Bundesrepublik Deutschland (case C‑582/14). According to the ECJ The dynamic internet protocol address of a visitor constitutes personal data, with respect to the operator of the website, if that operator has the legal means allowing it to identify […]

Tags: , ,

1 2 3 4 5 10