Short Reads

A new framework for data transfers to the US: the EU-US Privacy Shield

A new framework for data transfers to the US: the EU-US Privacy Shield

A new framework for data transfers to the US: the EU-US Privacy Shield

05.02.2016

After the European Court of Justice (“ECJ”) declared the Safe Harbour Decision invalid in its judgement of 6 October 2016, the European Commission and the United States now have agreed on a new framework for transatlantic data flow: the EU-US Privacy Shield. The new framework aims to protect the fundamental rights of European citizens where their data is transferred to the United States and to ensure legal certainty for businesses.

According to yesterday's press release of the European Commission, the new framework includes:

  • Strong obligations on companies handling Europeans’ personal data and robust enforcement;
  • Clear safeguards and transparency obligations on U.S. government access;
  • Effective protection of EU citizen’s rights with several redress possibilities.

Although an agreement has been reached on the principles, nothing is finalised yet. A draft “adequacy decision” will be prepared in the coming weeks, after which the Article 29 Working Party and a committee composed of representatives of the EU Member States will be consulted before submission of the arrangement for approval of the College of Commissioners of the European Commission and the US. In the meantime, the US will make the necessary preparations to put the new framework in place.

The Article 29 Working Party announced today that it welcomes the EU-US Privacy Shield and that Model Clauses and Binding Corporate Rules remain valid for the time being.

Read more about the new framework in the press release of the European Commission. We will keep you posted.

Team

Related news

24.05.2019 EU law
One year of GDPR - The regulatory warm-up

Short Reads - The first year of the General Data Protection Regulation ("GDPR") is over. Although early noises predicted an entirely new data protection regime, the European legal framework did not change substantially, the major changes being an expansion of the territorial scope to non-EU countries and stronger powers of enforcement. In spite of fears and rumours of immediate enforcement and huge fines, most regulators focused on helping companies achieve compliance, or they enforced without directly imposing fines.

Read more

21.05.2019 EU law
Part one - GDPR and Public Law - Applicability of GDPR to public bodies

Articles - Since the GDPR became applicable almost one year ago, multiple questions have arisen about its interaction with other fields of law. In this three-part blog series of “GDPR and Public Law”, we discuss three relevant issues of the interaction of GDPR with public law and government. In this blog we discuss the applicability of GDPR to public bodies.

Read more

27.03.2019 NL law
Ook WhatsApp- en sms-berichten op privételefoons vallen onder Wet openbaarheid van bestuur

Short Reads - De Afdeling bestuursrechtspraak van de Raad van State heeft in een uitspraak van 20 maart 2019 (ECLI:NL:RVS:2019:899) bevestigd dat ook WhatsApp- en sms-berichten onder de reikwijdte van de Wet openbaarheid van bestuur (Wob) vallen. Dat geldt niet alleen voor WhatsApp- en sms-berichten die staan op werktelefoons, maar ook voor berichten die staan op privételefoons van bestuurders of ambtenaren. Daarmee gaat de Afdeling terecht verder dan de rechtbank (ECLI:NL:RBMNE:2017:5979) in eerste aanleg, die van oordeel was dat de Wob niet van toepassing is op berichten op privételefoons.

Read more

Our website uses functional cookies for the functioning of the website and analytic cookies that enable us to generate aggregated visitor data. We also use other cookies, such as third party tracking cookies - please indicate whether you agree to the use of these other cookies:

Privacy – en cookieverklaring