GDPR Privacy 2020, summary of EU regulation 678 after the rejection of the Privacy Shield

Discuss topics related to the USA Database.
Post Reply
sakib23
Posts: 41
Joined: Wed Dec 04, 2024 5:10 am

GDPR Privacy 2020, summary of EU regulation 678 after the rejection of the Privacy Shield

Post by sakib23 »

In July 2020, the European Court of Justice declared the protection of personal data offered by the EU-US Privacy Shield to be inadequate due to its lack of compliance with the GDPR. Many US companies that process data of European users (such as Mailchimp, Active Campaign, Campaign Monitor and other leading email marketing software products ) have based their activity on the Privacy Shield, which provided for the development of a kind of self-certification declaring the adoption of adequate data protection measures. With the abolition of this agreement between the US and the EU, the only way for US companies to continue operating here seems to be to move their headquarters to Europe. In light of these facts, you may need to find European alternatives to Mailchimp that guarantee the protection of your personal data in accordance with the GDPR .

EU privacy rules for non-European companies
The European Court of Justice has reportedly ruled against the EU-US shiel spam phone number data d, on the grounds that domestic US regulations do not provide sufficient guarantees in terms of data protection . However, contractual data protection clauses were deemed valid, provided that a level of protection equal to that of GDPR is guaranteed in the contracts.

In any case, those who use Mailchimp or other US systems to send their emails must ensure that the recipient has given explicit consent to the transfer of data outside the EU , after being informed about the possible risks.

In essence, the level of data protection (i.e. all appropriate safeguards, enforceable rights and effective remedies) required in the context of data transfers from the EU to other countries must be equivalent to that guaranteed by the European Union. For this reason (since there may not be real equivalence due to different legal systems, distance and different languages), despite the validity of contractual clauses, many European companies may not feel comfortable entrusting their data to an American email marketing service .

Image

The transfer of data takes place, in fact, on servers in the USA and its processing is in any case subject to internal US regulations, which makes it difficult to guarantee the same data protection standards for a European company based in Europe and therefore (as necessary) aligned with the GDPR. The legal systems in force in European states, in fact, are very different from those in force in the United States and, also in terms of privacy, national law is always bound to prevail.
Post Reply