@2KSupport Sure, but your breach notification, which I also received, is missing one critical piece of information. Who the hell are you people? What do you do, make or sell that might mean you have my data?
#Airline#etiquette. Keep your socks on. Use your inside voice. Consider not saying everything that comes into your head, without cease, for the whole flight. Sit next to the victim you're monologuing at, not perched on the aisle armrest one row up with your feet in my face.
Hello @AXAHealth. I've been on hold for 26 minutes so far. The kicker? You called me. I mean, it's not as though this is an urgent health issue or anything. Oh, wait. Yes it is.
@OliverDowden You said "[I] had been unable to take on casework from the MP who held his seat before [me] because [I] had lacked the necessary consent." Rot. You had several lawful bases for continuing, including public interest and contract. Stop looking for problems where they don't exist.
Now that we've left the EU we can seize the opportunity to develop a world-leading data regime that will deliver for people across the UK.
Forging new global data partnerships and designing our own common sense data laws are all part of our plan.
👉 gov.uk/government/new…
@OliverDowden You said "churches had been prevented from sending parish newsletters to advertise jumble sales because of the risk of being classed as marketing and therefore needing prior consent from recipients." This is marketing and it does require consent. Not hard to understand.
@OliverDowden Specifically, if you promulgate an adequacy decision for the US absent any changes in their policy the EU *will* revoke their decision in favour of the UK. You have seen the recent encomium from the Hamburg DPA, yes? And the EDPB guidance on international transfers?
@OliverDowden I think what you mean is unleash the power of data to cripple our relationship with our main trading partners, destroy our own industries and help US tech firms continue to exploit our citizens and our lax tax regime, while ignoring our responsibilities under the CFR.
@British_Airways help me out here. You've cancelled our flight. You won't talk to me about changing the booking. Your agent hung up on me. You won't talk to our agent either. Every time we call we're in a queue for ages. How are we supposed to get home?
@JamesTGallagher You do realise that the "long years of hanging around" are when you find out whether the vaccine has long-term side effects on its test subjects? None of the test subjects has yet conceived and borne children, gone through puberty, been exposed to another significant infection...
So, @ICOnews, if my complaint about an organisation is that they don't provide contact details for written or emailed complaints, how helpful do you think it is to stop me notifying you until I've written to the organisation I'm complaining about?
@joetidy SOP for the ICO at the moment, sadly. German DPAs like Hamburg are clearly showing how it's done - and so, frankly, are Swedish controllers like H&M in accepting their penalty and apologising.
Data-protection pros can you tell me if this pace of enforcement is normal for other countries:
- Sept 2018: BA gets Magecart hacked. 400k customers lose details.
- July 2019: Information Commissioner announces intention to fine BA a record £183m.
- Today: no sign of a penalty.
@MissIG_Geek Technically, no. A22 says that the DS has the right not to be subject to a *decision* based solely on automated processing. Provision of data isn't a decision. However, the org would obvs be in breach of A15 because of inaccuracy in their response to the SAR.
If an org uses SAR software to automate data-gathering* and stuff gets missed b/c the software is a crude blunt instrument that’s crap at ID-ing diffuse personal data...
...is Article 22 invoked? 🤔
*(human collates output but doesn’t do manual checks of data adequacy)
You know the BT prox sensing in the #ContactTracing app is inaccurate, @MattHancock. Follow the science (electromagnetics in this case). With the PCR #FalsePositive rate, there will be much needless self-isolation. Targeted shielding and a better test is what we need.
So, @OliverDowden, any plans to hire some privacy professionals to keep an eye on what your 500 new data scientists will be getting up to? Or is the UK going all-in on the surveillance state? uk.reuters.com/article/uk-bri…
Seriously? @Jeremy_Hunt “I think this mass testing could potentially be linked to an app on your phone so that you could show people on your phone the last time you got tested.” No. Just no. Infosec/privacy nightmare, discriminatory, will inevitably be abused. #Covid_19#privacy
@MattHancock STOP suggesting the use of insecure tools like WhatsApp. WhatsApp is banned by the NHS because it shares metadata with Facebook, exports data to the US, and makes it impossible for patients to exercise their data subject rights. Use @hospifyapp or another NHS approved system.
This crisis has proved there’s bureaucracy that our healthcare system can do better without.
Our NHS People Plan will cut red tape to allow our NHS staff to better deliver the high-quality care they are renowned for.
telegraph.co.uk/news/2020/07/3…
Six months and counting...
Brexit is still happening, and hidden beneath it is a potential elephant trap for anyone in the UK who trades digitally with Europe. blog.rappidly.com/2020/07/08/bre…
@saramnewman@virginmedia We have an engineer coming. I presume it's risk assessment for that visit, but not mentioned. And no link to any kind of privacy resources or the DPO that they must have hired now that they're processing A9 data at scale.
Just had this by *SMS* from @virginmedia : Hi, Virgin Media again. Due to rising cases of coronavirus (Covid-19), could you tell us if anyone at home has been diagnosed with or is showing symptoms of Covid-19? Reply YES or NO.
Remind me when we suspended the UKDPA?