Edition

This is a permanent edition. It carries the briefing exactly as published on this date and does not change.

CNIL Hosts G7 Roundtable on Data Protection and Privacy for 2026

The French data protection authority, CNIL, is hosting the G7 Roundtable of Data Protection and Privacy Authorities in Paris. This significant event will bring together global leaders to discuss critical issues at the intersection of technological advancement and fundamental privacy rights. The agenda likely includes topics such as AI governance and cross border data flows, reflecting the growing need for international cooperation in data protection. The outcomes of such high level discussions often influence future regulatory frameworks and international agreements.

Today's question

EDPB guidelines on the right to erasure confirm that:

  1. The right is absolute and applies in all circumstances, as established under the data subject rights framework
  2. Only written erasure requests are valid, subject to the applicable exemptions and conditions
  3. Erasure requests can be routinely rejected, as established under the data subject rights framework, as required by the applicable legal framework
  4. Controllers must assess each erasure request against the grounds in Article 17 and the exceptions in Article 17 , documenting their reasoning

Answer this question on the site

Worth knowing

  1. Anthropic's 'Mythos' AI System Aids Firefox in Significantly Reducing Security Bugs

    Mozilla reports that its collaboration with Anthropic's 'Mythos' AI system has led to a significant reduction in security vulnerabilities within Firefox, identifying 423 bugs. This partnership highlights the increasing role of artificial intelligence in enhancing cybersecurity defenses and improving software integrity. The application of AI in bug detection offers a proactive approach to identifying and mitigating potential security risks before exploitation.

  2. CNIL Publishes Recommendations on Personal Data Use for Credit Solvency Assessment

    The CNIL, France's data protection authority, has issued new recommendations concerning the use of personal data for creditworthiness assessments. These guidelines aim to ensure that individuals' privacy rights are protected while financial institutions evaluate credit applications. This focus underscores the importance of fairness, transparency, and data minimization in financial services, particularly where algorithmic decision making might be involved.

  3. India Issues Infosec Red Alert Due to Potential Mythos AI Crime Spree Risk

    India has issued a significant cybersecurity alert, expressing concerns that the advanced AI, Mythos, developed by Anthropic, could potentially be exploited by criminals. This highlights growing global anxieties about the dual use nature of powerful AI technologies and the need for robust infosec frameworks to counter new types of AI driven threats. The proactive alert by Indian authorities underscores the preemptive measures being considered to address AI related risks.

Compiled that morning from regulator, court and authority sources. Primary sources are linked on every story.