Privacy & Cybersecurity #86
European regulators and courts issued major privacy rulings and templates covering SME GDPR compliance, Meta AI glasses, shareholder data publication, and cross-border video hearing transfers. Canada, the UK, New York, and U.S. agencies also released guidance on AI governance, vendor assessments, cybersecurity readiness, insider threats, and AI model distillation. #Meta #RayBanMetaAIGlasses #CJEU #AutoriteitPersoonsgegevens #HmbBfDI #NCSC #OPC #CanadianCentreForCyberSecurity #NYDFS #CISA #NSA #FBI #DeepSeek #MoonshotAI #Alibaba #MiniMax #StepFun #ZAI

Keypoints

  • The Dutch DPA published GDPR templates for SMEs, including a processing register and privacy notice.
  • The Hamburg DPA said Meta AI Glasses can trigger GDPR obligations and may require stronger transparency measures.
  • The Advocate General found unrestricted public access to shareholder data may breach GDPR proportionality rules.
  • Canada issued guidance on third-party privacy assessments and launched a national AI strategy and literacy initiative.
  • U.S. and Canadian agencies warned about shadow AI, insider threats, risk assessment gaps, and large-scale AI model distillation.

Read More: https://keplernewsletter.substack.com/p/privacy-and-cybersecurity-86