Comment on Have companies that claim to anonymize the data gathered on individuals ever been independently audited to verify that?

key@lemmy.keychat.org ⁨9⁩ ⁨months⁩ ago

Privacy Compliance audits are a thing. Usually companies will hire a firm to do the audit which will culminate in a report of any violations and recommendations. That might be taken on for a company to cover its ass or because a client company asks them to as part of a contract. There’s not usually a “punishment” for those but a contract could have a clause to that effect.

Legal enforcement depends on the law in question. There’s a number of data privacy laws beyond GDPR each with different investigation and enforcement actions. They definitely can result in an audit by the enforcement body with risk of stick.

source
Sort:hotnewtop