data protection | In Principle

Go to content
Subscribe to newsletter
In principle newsletter subscription form

data protection

Medical data—keep or delete?
From 25 May 2018 Polish healthcare institutions will face conflicting rules on how to handle medical documentation under the EU’s General Data Protection Regulation and Polish healthcare laws. The inconsistencies could be eliminated by the new Personal Data Protection Act, but it appears unlikely that work on the new act will end on time. So what should institutions do to limit their regulatory risk?
Medical data—keep or delete?
How will the new ePrivacy Regulation affect the operation of websites?
The General Data Protection Regulation entering into force on 25 May 2018 is not the only privacy revolution in store for the EU. The proposed ePrivacy Regulation is also generating greater and greater controversy and may change the shape of the internet as we know it.
How will the new ePrivacy Regulation affect the operation of websites?
Privacy Shield has been in operation for a year, but will it continue?
The first year of functioning of the Privacy Shield programme will soon end. A review of the programme is scheduled for September 2017. It is designed to be a thorough verification of whether the programme meets the hopes pinned on it and effectively ensures adequate protection of personal data by American recipients of data registered for the programme. The review should also determine the future direction for development of the programme and identify areas requiring improvement.
Privacy Shield has been in operation for a year, but will it continue?
Privacy Shield up and running
On 12 July 2016 the European Commission adopted a decision under Directive 95/46/EC on the adequacy of the protection provided by the EU–US Privacy Shield, confirming that entities operating in the United States that meet the conditions specified in the Privacy Shield programme will be deemed to provide an adequate level of protection of personal data. This means that it will be permissible to forward personal data to such entities without the need to apply other mechanisms to ensure adequate protection of the data, such as binding corporate rules or approval of the data protection authority.
Privacy Shield up and running
New era for personal data protection
Work is underway on a General Data Protection Regulation for the EU. The changes expected in the new legislation will be important for outsourcing companies. Among the planned changes, there will be severe sanctions for violation of data protection regulations.
New era for personal data protection
Transfer of personal data to the United States: Privacy Shield v Safe Harbour
Invalidation of the Safe Harbour decision created a gap in the system for transfer of data from Europe to the US. The question arose of how to evaluate the legality of existing data transfer practices based on Safe Harbour, and what rules to apply in the resulting vacuum.
Transfer of personal data to the United States: Privacy Shield v Safe Harbour
End of the Safe Harbour programme: What next?
The Court of Justice has issued a judgment invalidating the European Commission’s Safe Harbour decision. This means that participation in the Safe Harbour programme by US entities is no longer grounds for European companies to transfer personal data of EEA citizens to the United States.
End of the Safe Harbour programme: What next?
Drones and data protection
The increasing commercial use of drones raises legal aspects of the operation of unmanned aerial vehicles. In this article we focus on one of the most hotly debated legal issues related to drones: the use of drones in light of regulations on protection of personal data.
Drones and data protection
New Council of Europe recommendation on processing of employee’s personal data in light of new technologies
The new recommendation on processing of data for purposes of employment is designed to meet challenges posed by greater digitisation.
New Council of Europe recommendation on processing of employee’s personal data in light of new technologies
Protection of personal data in internal investigations
Poland’s data protection regulations do not directly address internal investigations, but that does not mean they do not apply. In fact they can play a major role in drawing the line between lawful and unlawful investigative measures.
Protection of personal data in internal investigations
The new EU data protection framework and medical research
The EU’s proposed General Data Protection Regulation has raised issues about the impact that new privacy protections may have on how clinical trials are conducted and information about patients is used for research purposes. Sylwia Paszek of Wardyński & Partners discussed concerns about the draft regulation in an interview by Simon Fuller.
The new EU data protection framework and medical research
Consultation concerning intended redundancies and personal date protection
When an employer consults with a trade union concerning the intention to lay off workers, it is easy to run afoul of data protection regulations.
Consultation concerning intended redundancies and personal date protection