IT, Cybersecurity & Data·Norway·Finanstilsynet·2 weeks ago
From 1 September 2026, financing, debt-collection and estate-agency firms face adapted DORA requirements. The supervisor specifies temporary incident-reporting channels.
IT, Cybersecurity & Data·Estonia·Riigi Teataja·2 weeks ago
The new regulation preserves compatible existing security measures and allows pre-existing compliance documentation to remain valid for up to three years.
IT, Cybersecurity & Data·Finland·Finlex·2 weeks ago
KHO upheld the consent order. Visiting a news site did not amount to expressly requesting content personalised through tracking and analysis.
IT, Cybersecurity & Data·Finland·Finlex·2 weeks ago
The design steered users towards acceptance. Following IAB Europe’s TCF standard did not prove compliance with cookie rules.
Legal & Corporate·Sweden·Regeringskansliets rättsdatabaser·3 weeks ago
From 2 January 2027, the scope includes partly publicly funded private activities under Lag (2026:1637); the duty covers technical processing and storage, including subcontractors.