GDPR

Amazon handed record $888 million fine from EU data privacy watchdog

Amazon has been handed its largest ever privacy fine in the EU by Luxembourg’s data watchdog. The CNPD fined the company €746 million ($888 million) on July 16th for violating the bloc’s strict data privacy laws, known as GDPR. Amazon disclosed the ruling in an SEC filing on Friday in which it slammed the decision…

Amazon has been handed its largest ever privacy fine in the EU by Luxembourg’s data watchdog. The CNPD fined the company €746 million ($888 million) on July 16th for violating the bloc’s strict data privacy laws, known as GDPR. Amazon disclosed the ruling in an SEC filing on Friday in which it slammed the decision as baseless, adding that it intended to defend itself “vigorously in this matter.” “There has been no data breach, and no customer data has been exposed to any third party,” Amazon told Bloomberg. “These facts are undisputed. We strongly disagree with the CNPD’s ruling.” It added that it plans to appeal the decision. Amazon has its EU headquarters in Luxembourg, tasking the local data regulator with overseeing its compliance.The penalty is the result of a 2018 complaint by French privacy rights group La Quadrature du Net, which filed numerous lawsuits against Big Tech companies on the behalf of 12,000 people shortly after the GDPR was established that year. Among those was a case involving Google’s Android operating system that led to France’s CNIL regulator slapping the search giant with a $57 million fine in January, 2019 — the biggest GDPR fine to date. The watchdog ruled that the company had violated the GDPR due to its failure to obtain legal consent for data collection related to its ad targeting practices.The record penalty comes amid heightened scrutiny of Amazon’s business in Europe. Its use of data is also at the heart of the EU’s antitrust investigation. Following a year-long probe, officials in November reached a preliminary decision that Amazon had breached competition rules by using third-party seller data to boost its own products. At the same time, they launched a second investigation into its alleged preferential treatment of its own products on its site and those of its partners.
Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

GDPR

Tech Tuesday: Data privacy and synthetic data generation tools

Data has become simultaneously the most valuable asset most organisations own and the most heavily regulated one. GDPR fines exceeded €4.5 billion cumulatively by early 2026. The EU AI Act’s classification of training data quality as a high-risk system requirement has made data provenance a legal obligation rather than a best practice…

Data has become simultaneously the most valuable asset most organisations own and the most heavily regulated one. GDPR fines exceeded €4.5 billion cumulatively by early 2026. The EU AI Act’s classification of training data quality as a high-risk system requirement has made data provenance a legal obligation rather than a best practice…
Read More

Continue Reading
GDPR

Researcher reveals official White House app is one command away from tracking your precise location every 4.5 minutes – app can also inject code to dodge cookie consent, GDPR banners, and paywalls

White House app contains code to hide cookie options, GDPR banners, and paywalls – and collects extensive user data…

White House app contains code to hide cookie options, GDPR banners, and paywalls – and collects extensive user data…
Read More

Continue Reading
GDPR

Viva la revolución: LinkedIn profile visitor lists belong to the people, says Noyb

GDPR Article 15 doesn’t care if you want to make money by selling users’ data back to them A LinkedIn feature the average non-paying user likely only glances past could end up setting a legal precedent in the EU regarding how companies treat customer data that they’ve processed. …

GDPR Article 15 doesn’t care if you want to make money by selling users’ data back to them A LinkedIn feature the average non-paying user likely only glances past could end up setting a legal precedent in the EU regarding how companies treat customer data that they’ve processed. …
Read More

Continue Reading
GDPR

Estonia is the rare EU country opposing bans on children’s social media use

In short: Estonia and Belgium are the only two EU member states to have declined the Jutland Declaration, an October 2025 pan-European commitment to restrict children’s access to social media. Estonia’s ministers argue that age-based bans are unenforceable, that children will find ways around them, and that the correct approach is to enforce the GDPR against

In short: Estonia and Belgium are the only two EU member states to have declined the Jutland Declaration, an October 2025 pan-European commitment to restrict children’s access to social media. Estonia’s ministers argue that age-based bans are unenforceable, that children will find ways around them, and that the correct approach is to enforce the GDPR against […]
This story continues at The Next Web…
Read More

Continue Reading