The General Data Protection Regulation (GDPR) is the EU’s new and strengthened general framework for the protection of personal data. The GDPR directly applies in all EU countries since 25 May 2018. However, EU countries still need a national data protection law because the GDPR contains so-called opening clauses which leave member states discretion on some aspects.
For instance, the GDPR requires member states to set the minimum age at which children can give consent to the processing of their personal data when using information society services such as social media. Member states must choose between 13-16 years, below which a parent or guardian must give consent. This choice is impactful for companies, which must make reasonable efforts to verify that the user is over the age of consent and that consent is given or authorised by the holder of parental responsibility over the child.
Of the nine surveyed countries, most countries (i.e. Belgium, Spain, Sweden and the UK) have chosen to set the age of a valid child consent at 13 years. However, three countries (i.e. Germany, Ireland and the Netherlands) have chosen to set it at 16 years.
16 October 18
New benchmark on EU countries that awarded 5G pioneer bands
Our new research on EU targets for the 5G pioneer bands shows which countries have awarded some of the three spectrum bands that have been identified as most suitable for the introduction of 5G in Europe.
10 October 18
Data sharing and re-use - Event summary and briefing from the BITS Seminar
On 3 October, together with the Research Centre in Information, Law and Society (CRIDS), Cullen International organised a seminar on data sharing and re-use.
04 October 18
New benchmark on compensation for late, damaged and lost postal items in Europe
Cullen International’s Postal service now includes a new benchmark covering the conditions applying to delayed, lost and damaged items in eleven European countries.