Ample research has demonstrated that compliance with data protection principles remains limited on the web and mobile. For example, almost none of the apps on the Google Play Store fulfil the minimum requirements regarding consent under EU and UK law, while most of them share tracking data with companies like Google/Alphabet and Facebook/Meta and would likely need to seek consent from their users. Indeed, recent privacy efforts and enforcement by Apple have had - in some regards - a more pronounced effect on apps' data practices than the EU's ambitious General Data Protection Regulation (GDPR). Given the current mismatch between the law on the books and data practices in reality, iterative changes to current legal practice will not be enough to meaningfully tame egregious data practices. Hence, this technical report proposes a range of priorities for academia, regulators and the interested public in order to move beyond the status quo.
翻译:全面研究表明,在网络和移动上,对数据保护原则的遵守仍然有限,例如,几乎所有谷歌游戏商店的应用程序都没有达到欧盟和联合王国法律规定的最低同意要求,而大多数软件与谷歌/Alphabet和脸书/Meta等公司共享跟踪数据,并可能需要征求其用户的同意。事实上,最近苹果公司在隐私方面的努力和执行在某些方面比欧盟雄心勃勃的一般数据保护条例(GDPR)对应用程序的数据做法产生了更显著的影响。 鉴于目前有关书籍和数据做法的法律在现实中并不匹配,对现行法律做法的反复修改将不足以有意义地抑制恶劣的数据做法。 因此,本技术报告为学术界、监管者和感兴趣的公众提出了一系列优先事项,以便超越现状。</s>