Digitale Gesellschaft e.V./Netzwerk Datenschutzexpertise/Deutsche Vereinigung für Datenschutz e. V./Digitalcourage e. V. Beschwerde bei den deutschen Datenschutz-Aufsichtsbehörden wegen VERHALTENSBASIERTER WERBUNG im Internet und Aufforderung, hierzu Datenschutzleitlinien zu erarbeiten und zu veröffentlichen.
https://www.golem.de/news/datenschutz-massenbeschwerde-gegen-verhaltensbasierte-werbung-1906-141743.html
https://digitalcourage.de/sites/default/files/2019-06/Beschwerde_verhaltensbasierte_Werbung_04062019.pdf
UK: ICO Blog: Why special category personal data needs to be handled even more carefully
“Due to the possible risks, the ICO expects controllers to take all necessary precautions to protect this data and we have published new guidance to help you do this.”
https://ico.org.uk/for-organisations/guide-to-data-protection/guide-to-the-general-data-protection-regulation-gdpr/special-category-data/
“Many of the DPA 2018 conditions require you to have an appropriate policy document in place. This is a short document that should outline your compliance measures and retention policies with respect to the data you are processing.”
https://ico.org.uk/for-organisations/guide-to-data-protection/guide-to-the-general-data-protection-regulation-gdpr/documentation/
Appropriate policy document template:
https://ico.org.uk/media/for-organisations/documents/2616286/appropriate-policy-document.docx
Full blog article
https://ico.org.uk/about-the-ico/news-and-events/news-and-blogs/2019/11/why-special-category-personal-data-needs-to-be-handled-even-more-carefully/
Bavaria: Google Analytics needs consent
Press release – covering “Reichweitenmessung” vs. “Tracking”
Deutsche Wohnen SE – Berlin Commissioner for Data Protection Imposes Fine on Real Estate Company
TeleTrust Technical and Organizational Measures (TOM) – 2019 version
Honestly, I am not sure how good these really are.
Awareness: Interactive site: “This happens with your data when you accept cookies”
Austrian DPA issues order against Swiss company (non-EU controller)
AEPD publishes a guide on data protection rights of patients and health users
The Spanish Agency for Data Protection (AEPD) has published the ‘Guide for patients and users of health’, a document that responds to the most frequent questions that citizens usually ask when their personal data is processed by centers, administrations and health professionals and which aims to facilitate the knowledge of their rights.
In a second part, the ‘Guide for patients and healthcare users’ collects the issues raised most frequently before the AEPD.
Press release: https://www.aepd.es/prensa/2019-11-14-guia-pacientes-usuarios-sanidad.html
Guide (in Spanish):
https://www.aepd.es/media/guias/guia-pacientes-usuarios-sanidad.pdf