AGCM’s draft guidance on online reviews turns authenticity and traceability into compliance issues that may reshape how platforms handle reputation signals.
When AI costs are split across renewals, APIs, tokens, and office-level purchases, the real issue is not only spend - it is whether administrations can still see what they bought, from whom, and under which controls.
A sentiment-analysis plug-in for corporate messaging has landed in a legal gray zone, where ordinary text processing can start looking like employee surveillance.
The EDPB’s 03/2026 guidance places generative-AI scraping firmly inside GDPR analysis whenever personal data enters the training pipeline, turning dataset design into a compliance and security problem at the same time.
The EU’s binding commitments on SAP support may give on-prem customers more room to maneuver, while also making legacy ERP planning more complex.
The latest EDPB guidance frames anonymization as an ongoing assessment, not a one-time label, with re-identification risk, AI, and accountability now central to the privacy test.
The European debate over Chat Control is now exposing a hard technical question: how far can message inspection go before private communication stops being private?
In Italy’s NIS2 framework, dependency mapping can elevate shared platforms like ERP, IAM, SOC, cloud, and common services into critical scope when they support high-impact operations.
A new Italian framework puts human authorship, training data use, and opt-out handling into sharper focus for anyone building or deploying generative AI.
Europe’s audiovisual rules are being stress-tested by machine-made media, where provenance, disclosure, and catalog prominence matter as much as production itself.
As obligations spread across more processes, the value of tooling lies in making documentation, ownership, and deadlines easier to track and easier to prove.
The latest EDPB draft on anonymisation shifts the real question from how data is masked to whether reidentification is still realistically possible in the hands of relevant actors.
The EU is stitching AI governance, product security, and critical-infrastructure resilience into one policy stack, and that has practical consequences for vendors and defenders alike.
The real shift is not that HR is adopting more AI, but that it is being asked to govern systems that touch people, data, and decisions inside regulated workplace workflows.
The 50% discount is a reminder that personal-data cleanup is increasingly marketed as a practical privacy measure, not just a subscription perk.
Italian companies are being pushed to raise their security maturity, but weak governance, uneven training, incomplete controls, and fragile risk management can make compliance harder than the checklist suggests.
The Ecosistema dei Dati Sanitari is meant to make clinical information more structured and interoperable, but the real question is whether its rollout can be measured clearly enough to trust.
A German ministerial case has turned a familiar AI question into a governance problem: if generative tools shape public text, citizens still need to know who authored the message and who stands behind it.
The debate around artificial intelligence is increasingly turning on who can govern data flows, not just who can claim them, and that shift has direct consequences for privacy, market power, and digital resilience.
Digital communications can travel flawlessly and still leave the hardest question unanswered: what, exactly, can be shown about the recipient’s real awareness of the message?