GDPR Information Security Personal data Privacy

EU Age Verification under scrutiny as transparency questions remain

The European Commission’s DG CONNECT disclosed nine documents in response to an access-to-documents request, but all were already publicly available resources. No Data Protection Impact Assessment (DPIA), internal privacy-by-design documentation, threat models, or controller-role assessments were released. DG CONNECT stated it does not hold a DPIA, arguing that responsibility lies with the future publisher of […]

Cybersecurity Personal data Privacy

UK pushes for tougher age checks as TikTok faces investigation

The UK’s communications regulator, Ofcom, is demanding stronger age verification measures from social media platforms ahead of a proposed social media age ban. The regulator has launched an investigation into TikTok, questioning whether its current age assurance methods effectively protect minors. Ofcom is also investigating dozens of adult websites and working with Google and Bing […]

Data Sharing EIDAS Privacy

Digital wallets are the new trust infrastructure for the digital economy

The World Bank argues that digital wallets represent a fundamental shift from siloed digital identity, data-sharing, and payment systems toward a unified, user-centric trust ecosystem. Digital wallets enable individuals to securely store and control verifiable credentials issued by trusted organizations. Users can selectively share only the data required, improving privacy and reducing unnecessary data exposure. […]

AI Privacy

Europese miljarden geinvesteerd in omstreden tech in strijd met onze democratie

Europese banken en fondsen investeerden eind 2025 minstens 27 miljard dollar in Palantir Technologies, ondanks zware kritiek op mensenrechten en democratische waarden. Het aandeel van Europese investeerders groeide met ruim 60%, terwijl het bedrijf gelinkt blijft aan surveillance, militaire operaties en migratiebeleid. Experts waarschuwen dat deze investeringen indirect een anti-democratische agenda versterken, mede door nauwe […]

Privacy

Privacy onder druk bij aanpak schulden

De Autoriteit Persoonsgegevens waarschuwt dat de aanpak van schulden steeds vaker ten koste gaat van privacy. Bij vroegsignalering worden kleine betalingsachterstanden al snel gezien als problematische schulden.Gegevensdeling gebeurt regelmatig zonder duidelijke kaders of medeweten van betrokkenen. Ook ontstaan initiatieven buiten de wet, die soms overgaan in ongewenste bemoeizorg. De AP roept op tot strengere naleving […]

AI Privacy

Global privacy alarm raised for AI without consent

On 23 February 2026, a coalition led by the Global Privacy Assembly warned about AI systems generating realistic images and videos of individuals without consent. They highlighted rising harms such as non-consensual intimate imagery, defamation, cyberbullying, and risks to children. Organizations are urged to follow privacy laws, build strong safeguards, ensure transparency, and provide fast […]

AI Privacy

When Palantir-AI becomes a sovereignty risk

Switzerland rejected Palantir after a technical review found data leakage cannot be reliably prevented—an architectural, not legal, flaw. The concern isn’t analytics power, but loss of control over data flows, updates, access, and revocation. Germany faces a contradiction: promoting digital sovereignty while using Palantir in several federal states. Bavaria’s Palantir-based VeRA system triggered legal challenges, […]

AI Data Breach Privacy

How LLMs leak your data while prompting

Simple prompt injections can trick LLM agents into exposing sensitive personal data. Even with safeguards, attackers extract details like balances, transactions, or identifiers. Such attacks succeed in ~20% of cases and degrade agent performance by 15–50%. Defensive measures exist but remain incomplete, leaving users exposed. Bottom line: data sovereignty requires stronger guardrails. Trusting LLMs “as […]

AI GDPR Privacy

Austria deals blow to “Pay or Okay” consent model

The Austrian Federal Administrative Court confirmed that DerStandard’s “Pay or Okay” model breaches the GDPR. Users had to either accept tracking by hundreds of third parties or pay a subscription. Authorities ruled that this coercive model invalidates consent, which must be free and specific. Real consent rates drop to 1–7% when asked transparently, but the […]