All
Adequacy
Age Appropriate Design Code
AI
Binding Corporate Rules
Clinical Trials
Consultancy
CRM data retention
Data Breach
Data Discovery
Data Privacy Officer
Data Protection Impact Assessment (DPIA)
Data Protection Officer
Data Retention
Data Security & Encryption
Data Sharing
DSARs
EU AI Act
EU Data Act
EU/UK Representation Services
featured post
GDPR compliance
Global data privacy laws
Global data protection news
International
International data transfers
Lawful Bases
Marketing
Official Guidance
Policies & Documentation
Principles of GDPR
Privacy by Design
Privacy Software
Record of Processing Activities (RoPA)
Special Category Data
Staff Training & Awareness
Uncategorized
July 20, 2026

Marketing compliance under DUAA and PECR

Marketing

The Data Use and Access Act 2025 (DUAA) has brought a notable change to UK electronic marketing law, shifting the risk profile for compliance. From 5 February 2026, organisations can face fines of up to £17.5 million, or 4% of annual...

January 25, 2021

What is Adequacy?

Adequacy

NB: This blog was updated on 29/6/21 to reflect the EU Commission’s decision to grant the UK Adequacy. Adequacy, the word that has been on everyone’s […]

CCPA
March 2, 2020

CCPA Overview

Global data privacy laws

The California Consumer Privacy Act Overview The California Consumer Privacy Act (“CCPA”) entered into force on January 2020, bringing with it increased data protection obligations on […]

June 15, 2020

Privacy Software

Software that complements privacy by design. The software aims at building privacy and data protection up front, into the design specifications and architecture of information and […]
June 11, 2020

Legitimate Interests Assessment

An assessment that used to demonstrate whether not processing is necessary in the legitimate interests and does not prejudice the data subject’s interests, rights and freedoms.
June 11, 2020

Mapping Data Flows – Data Protection Definitions

Analysing data to understand how it is collected, used and shared.
June 11, 2020

Non Disclosure Agreement

An agreement between parties to prevent the unauthorised sharing of commercially sensitive or personal data.
June 11, 2020

Non-Essential Cookies

Cookies created by third parties and dropped on website users, for the purposes of analytics or advertisement tracking.
June 11, 2020

Offline Privacy Practices

Measures implemented by an organisation with the aim of protecting the privacy of individuals in respect of its “offline” data (i.e. paper-based records, internal systems etc.).
June 11, 2020

Records of Processing Activity

An inventory of all the data processing activity within an organisation, detailing the scope, legality, extent and nature of the processing.
June 10, 2020

Online Privacy Practices

Measures implemented by an organisation, with the purpose of protecting the privacy of individuals in respect of its public-facing systems (i.e. firewalls, threat detection systems, penetration […]
June 10, 2020

Optimisation Cookies

Cookies dropped on a website visitor, which analyses website use and provides feedback to the website owner through a variety of tools including heat-maps, session recordings, […]
June 10, 2020

Opt In – Data Protection Definitions

A positive action to express an indication to be part of an activity or to be involved in it.
Change your cookie consent