Personvernregelverk (GDPR)·Danmark·Datatilsynet·for 7 døgn siden
Datatilsynet: adequacy-country transfers need no further exporter measures, while Article 46 SCC/BCR transfers require a prior TIA, aided by the CNIL guide and EDPS checklist.
Digital operasjonell motstandsdyktighet (DORA)·Estland·Finantsinspektsioon·for 2 uker siden·4 dokumenter
The DORA information-register round is collected in early 2027 as of 31 December 2026, and a new section sets threat-led testing under the TIBER-EE national guide.
Skytjenester og datasuverenitet·Frankrike·Légifrance·for 2 uker siden
Hosted health-data storage must sit exclusively in the EU/EEA, contracts gain compelled-transfer disclosure clauses, and hosts must publish a live map of third-country transfers and remote access.
Elektroniske arkiv og digitale bevis·Frankrike·Légifrance·for 2 uker siden
Polynesian communes go paperless on PES v2+: three signature options, probative electronic data, and a tripartite convention with suspension fallbacks.
Digital operasjonell motstandsdyktighet (DORA)·Estland·Finantsinspektsioon·for 2 uker siden
Finantsinspektsioon's recommended TIBER-EE guide in force since 15 September 2026 sets the national playbook for DORA threat-led penetration testing, with voluntary use subject to prior coordination.
Personvernregelverk (GDPR)·Den europeiske union·EUR-Lex·for 3 uker siden
Generaladvokat Spielmann foreslår i C-317/25 at ISP-partnersamtykke ikke bærer Groupe Canal +s markedsføring uten nytt samtykke.
Digital operasjonell motstandsdyktighet (DORA)·Tyskland·Rechtsprechung des Bundes·for 4 uker siden·3 dokumenter
BaFin ordinance of 26 August 2026 (BGBl I Nr. 256) extends the audit report to DORA ICT duties for Wertpapierinstitute and crowdfunding providers, first for years starting after 31 Dec 2024.
Digital operasjonell motstandsdyktighet (DORA)·Norge·Finanstilsynet·for 1 måned siden
Fra 1. september 2026 gjelder tilpassede DORA-krav for finansierings-, inkasso- og eiendomsmeglingsforetak. Finanstilsynet angir midlertidige kanaler for hendelsesrapportering.
Cybersikkerhetslovgivning og NIS2·Estland·Riigi Teataja·for 1 måned siden
The new regulation preserves compatible existing security measures and allows pre-existing compliance documentation to remain valid for up to three years.
Personvernregelverk (GDPR)·Finland·Finlex·for 1 måned siden
KHO upheld the consent order. Visiting a news site did not amount to expressly requesting content personalised through tracking and analysis.
Personvernregelverk (GDPR)·Finland·Finlex·for 1 måned siden
The design steered users towards acceptance. Following IAB Europe’s TCF standard did not prove compliance with cookie rules.
Personvernregelverk (GDPR)·Sverige·Regeringskansliets rättsdatabaser·for 1 måned siden
From 2 January 2027, the scope includes partly publicly funded private activities under Lag (2026:1637); the duty covers technical processing and storage, including subcontractors.