Commission of the European Communities, Staff Working Paper, SEC (2004) 1323

Commission Staff Working Paper, The implementation of Commission Decision 520/2000/EC of 26 July 2000 pursuant to Directive 95/46 of the European Parliament and of the Council on the adequate protection of personal data provided by the Safe Harbour Privacy Principles and related Frequently Asked Questions issued by the US Department of Commerce   From the […]

Personal Information Protection Act (PIPA), Statutes of Alberta, 2003 Chapter P-6.5

The Personal Information Protection Act (PIPA) came into force on January 1, 2004. The Act protects individual privacy by requiring, in most cases, private-sector organizations to obtain consent for the collection, use and disclosure of personal information and providing individuals with a right of access to their own personal information. The Act also requires private […]

Article 29 Data Protection Working Party, Working Document: Transfers of personal data to third countries: Applying Article 26 (2) of the EU Data Protection Directive to Binding Corporate Rules for International Data Transfers

From the Working Document: “This working document aims at contributing to a more harmonised application and interpretation of Article 26 (2) of the Directive in the Member States and facilitating data flows in cases where adequate protection is provided.”   Referenced Authority: Directive 95/46/EC, Article 26(2)   The full text is available at http://ec.europa.eu… Open pdf

EU Directive 2002/58/EC

EU Directive 2002/58/EC, concerning the processing of personal data and the protection of privacy in the electronic communications sector (“Directive on Privacy and Electronic Communications”)   “The Directive on Privacy and Electronic Communications, known as the ePrivacy Directive, sets out rules on how providers of electronic communication services, such as telecoms companies and Internet Service […]

Article 29 Data Protection Working Party, Working document on determining the international application of EU data protection law to personal data processing on the Internet by non-EU based web sites

From the Introduction: “The objective of this document is to discuss the question of the international application of EU data protection law to the processing, in particular the collection, of personal data by web sites, which are based outside the European Union. This working document aims at being a useful tool and point of reference […]

Regulation (EC) No 45/2001

Regulation (EC) No 45/2001 of the European Parliament and of the Council of 18 December 2000 on the protection of individuals with regard to the processing of personal data by the Community institutions and bodies and on the free movement of such data Summary This Regulation contains provisions aiming to protect personal data processed by […]

European Commission Decision 2001/497/EC

Commission Decision on standard contractual clauses for the transfer of personal data to third countries, under Directive 95/46/EC   From the Decision: “The scope of this Decision is limited to establishing that the clauses in the Annex may be used by a controller established in the Community in order to adduce sufficient safeguards within the […]

Federal Personal Information Protection and Electronic Documents Act (“PIPEDA”)

In Canada, the PIPEDA regulates the collection, use and disclosure of personal information in the private sector. Unlike the United States there are currently limited legal requirements in existing Canadian privacy legislation requiring organizations to proactively notify individuals or appropriate regulatory bodies in an instance of data breach. The full text can be downloaded at […]