All
Adequacy
Age Appropriate Design Code
AI
Binding Corporate Rules
Clinical Trials
Consultancy
CRM data retention
Data Breach
Data Discovery
Data Privacy Officer
Data Protection Impact Assessment (DPIA)
Data Protection Officer
Data Retention
Data Security & Encryption
Data Sharing
DSARs
EU AI Act
EU Data Act
EU/UK Representation Services
featured post
GDPR compliance
Global data privacy laws
Global data protection news
International
International data transfers
Lawful Bases
Marketing
Official Guidance
Policies & Documentation
Principles of GDPR
Privacy by Design
Privacy Software
Record of Processing Activities (RoPA)
Special Category Data
Staff Training & Awareness
Uncategorized
July 20, 2026

Marketing compliance under DUAA and PECR

Marketing

The Data Use and Access Act 2025 (DUAA) has brought a notable change to UK electronic marketing law, shifting the risk profile for compliance. From 5 February 2026, organisations can face fines of up to £17.5 million, or 4% of annual...

January 25, 2021

What is Adequacy?

Adequacy

NB: This blog was updated on 29/6/21 to reflect the EU Commission’s decision to grant the UK Adequacy. Adequacy, the word that has been on everyone’s […]

CCPA
March 2, 2020

CCPA Overview

Global data privacy laws

The California Consumer Privacy Act Overview The California Consumer Privacy Act (“CCPA”) entered into force on January 2020, bringing with it increased data protection obligations on […]

June 10, 2020

Risk Based Decisions

Making choices of action (or inaction) based around the likelihood and impact of certain incidents occurring.
June 10, 2020

Sandbox

A dedicated environment within software and systems allowing for changes to be made and tested without having an impact on the operational functionality and the data […]
June 10, 2020

Senior Management Team

A collective group of senior managers responsible for key areas within an organisation, e.g. Finance, HR, Compliance, IT, Legal, Operations etc.
June 10, 2020

Special Category Data

Personal data requiring more protection because it is sensitive in nature. GDPR defines special category data as personal data revealing racial or ethnic origin, political opinions, […]
June 10, 2020

Stakeholder

An individual with an interest or concern in something (i.e. a Social Worker, Healthcare Professional, Headteacher etc. in respect of the welfare of a child).
June 10, 2020

Structured Platform

A central solution for the storage, processing, and analysis of information.
June 10, 2020

Transfer

The movement of data from one place to another. This could be, for example, from one data controller to another, or from one jurisdiction to another.
June 10, 2020

Tracking Cookies

Cookies are able to record data about the user of that specific browser, including site actions, browsing activity, purchases and preferences, IP address, and geographical location.
June 10, 2020

Verifying Identities

The process of establishing the identity of an individual to ensure correspondence is occurring with the correct person and not an impersonator.
June 10, 2020

Third-Party Cookies

Cookies that are created by domains other than the one the user is visiting at the time.
Change your cookie consent