Skip to main content

Could "Like" Plugins put your Website in Data Protection Hot Water?

Here's one to keep an eye on, a case currently going through Court of Justice of the European Union.

Basically, by including a "like" widget on your website, you could be passing personal data to 3rd party data processors, such as Facebook, Google & Twitter.


The case is of Fashion ID, a German online retailer which embedded a Facebook’s ‘Like’ button plugin on its website.

When a user lands on Fashion ID’s website, information about that user’s IP address and browser is transferred to Facebook. Importantly, that transfer occurs automatically when Fashion ID’s website has loaded, irrespective of whether the user has clicked on the "Like" button and whether or not they have a Facebook account.

It's technically a pre-GDPR case, but it does have relevance to the new legislation.

More details in this Press Release from Court of Justice of the European Union.

Comments

Popular posts from this blog

Dixons Carphone Data Breach - Now Up to 10 Million Customer Records

Although a pre GDPR data breach, Dixons announced on 31st July 2018 an update to the breach they identified in June. When initially announced on 13th June, it was 1.2 million customer records involved, but with further investigation the breach now looks to have affected approximately 10 million records.

Football Association of Ireland (FAI) confirm security breach of payroll systems

FAI staff have been warned in an internal memo that bank account and PPS details could have been accessed during the hacking of the association's email servers.

ICO to fine Marriott International £99m for 339 Guest Records Breach

The UK Information Commissioner’s Office (ICO) has issued a notice that it intends to fine Marriott International £99m in relation to a reservation database incident announced on November 30, 2018.