Loading…
Loading…
Tag
10 posts with this tag.
·9 min read
Cumulative GDPR fines crossed €7.1 billion as of early 2026. AI-related enforcement is accelerating. Five major cases involving Meta, TikTok, Clearview AI, OpenAI, and biometric data explain the specific risks. What small teams can do differently, and why your vendor DPA alone will not protect you.
·5 min read
Italy banned DeepSeek within 72 hours. 13 EU jurisdictions opened investigations. China has no GDPR adequacy decision. Here is what US and EU teams need to know before using DeepSeek or other Chinese AI models, and when the open-source version changes the calculation.
·5 min read
Meta's mandatory MCI program collected employee keystrokes for AI training, then leaked private conversations and medical records company-wide. The legal requirements for AI-powered employee monitoring -- and what the Meta incident means for your policy.
·5 min read
The exact URLs for enterprise privacy policies, DPAs, and trust centers from OpenAI, Anthropic, Google, and Microsoft, organized by vendor and updated for 2026.
·10 min read
What trust.openai.com contains, which certifications apply to which ChatGPT tier, and how to use OpenAI's DPA and enterprise-privacy commitments to satisfy GDPR Article 28 before deploying ChatGPT Enterprise or the API in your organization.
·9 min read
Using AI tools with California user data means CCPA obligations apply. This guide covers what counts as sharing under CPRA, the CPPA's finalized automated decision-making rules, training data obligations, and a 12-item compliance checklist for small teams.
·10 min read
AI agents that store personal data in RAG systems and vector databases cannot easily fulfill GDPR erasure requests. Here is what Spanish regulators found in 2026 and how to fix it before your next audit.
·7 min read
GDPR Article 22 applies when AI makes fully automated decisions with legal or significant effects on individuals. Small-team compliance guide: when Article 22 is triggered, what rights it creates, and the three steps to comply.
·13 min read
Administrative monetary penalties are reshaping data protection enforcement, giving small teams clearer risk signals and practical compliance steps to stay
·20 min read
GDPR and CCPA compliance for AI tools: 9-tool DPA status table, Article 22 automated decision rules, training data opt-out guide, and a copy-paste DPA request email template. Includes 2026 enforcement fines. Updated May 2026.