The General Data Protection Regulation (GDPR) is aimed at regulating the process in which commercial entities/3rd parties target and collect data related to people in the European Union (EU).

GDPR applies to all the entities that offer goods and services to the people in the EU, even if the entity is outside the EU.

The fines levied for GDPR are usually very high. There are two tiers of penalties, which max out at 20 million euros or 4% of global revenue (whichever is higher), plus data subjects have the right to seek compensation for damages.

The highest GDPR fine to date in an amount of 746 million euros, imposed by the DPA in Luxembourg against Amazon Europe Core S.à.r.l. in July 2021 due to non-compliance with general data processing principles.

The second highest fine of 405 million euros  was recently levied on Instagram by Ireland's data privacy regulator for Instagram's handling of children's data.

 

Comments

Popular posts from this blog