Feeds

Euro police data plan attacks 'fundamental rights'

EDPS slates police data sharing proposals, again

Next gen security for virtualised datacentres

A proposal to allow European police forces to share data undermines fundamental human rights, the European Data Protection Supervisor said today.

The European Council's proposal to extend data protection into police and judicial matters was designed to ensure first that police managed their data properly so that they could then share it between forces.

But the European Data Protection Supervisor said the German Presidency had "significantly weakened" the proposal's protections so it could get the European Council to accept it.

Thus it would achieve the opposite of what it set out to do: it would make police co-operation harder and citizens more vulnerable, the EDPS said in an opinion (pdf) today.

"The EDPS is well aware of the difficulties in reaching unanimity in the council. However, the decision making procedure cannot justify the lowest common denominator approach that would hinder the fundamental rights of EU citizens as well as hamper the efficiency of law enforcement," it said.

As the proposal would leave member states to impose their own law, sharing between states would become "inefficient and unworkable". For example, shared records would be populated with data collated from different forces that operated under different standards - there might be no way of knowing how well data from another force could be trusted, nor how well it would be looked after when it was given away.

The directive appears to try and escape the likely confusion that might evolve from such a hodge-podge of intelligence by removing the basic data protections that would necessitate it being managed properly in the first place.

For example, it dropped the proposal that countries be prevented from sharing data with others that don't have adequate data protection. The principle that would ensure the quality of police data has also been dropped, meaning there is no obligation on them to distinguish the level of accuracy and reliability of the intelligence being used, nor distinguish between different sorts of data subject such as criminals, suspects, victims and witnesses.

Further, it removed the limitations normally put on the uses to which data can be put, and that any derogations from this rule should be "necessary, proportionate, precise and foreseeable".

Then there was no measure to periodically purge the databases of duff and redundant data and no obligation on the police to rectify any mistakes in the data they hold.

The EDPS doesn't describe just what might go wrong if rules were not in place to ensure police data was managed properly, but the situation looks topsy-turvy: the whole point of the legislation was to ensure that protection was there so the data could be shared.®

The essential guide to IT transformation

More from The Register

next story
Munich considers dumping Linux for ... GULP ... Windows!
Give a penguinista a hug, the Outlook's not good for open source's poster child
UK fuzz want PINCODES on ALL mobile phones
Met Police calls for mandatory passwords on all new mobes
e-Borders fiasco: Brits stung for £224m after US IT giant sues UK govt
Defeat to Raytheon branded 'catastrophic result'
EU justice chief blasts Google on 'right to be forgotten'
Don't pretend it's a freedom of speech issue – interim commish
Yes, but what are your plans if a DRAGON attacks?
Local UK gov outs most ridiculous FoI requests...
Detroit losing MILLIONS because it buys CHEAP BATTERIES – report
Man at hardware store was right: name brands DO last longer
Snowden on NSA's MonsterMind TERROR: It may trigger cyberwar
Plus: Syria's internet going down? That was a US cock-up
UK government accused of hiding TRUTH about Universal Credit fiasco
'Reset rating keeps secrets on one-dole-to-rule-them-all plan', say MPs
Caught red-handed: UK cops, PCSOs, specials behaving badly… on social media
No Mr Fuzz, don't ask a crime victim to be your pal on Facebook
prev story

Whitepapers

5 things you didn’t know about cloud backup
IT departments are embracing cloud backup, but there’s a lot you need to know before choosing a service provider. Learn all the critical things you need to know.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Build a business case: developing custom apps
Learn how to maximize the value of custom applications by accelerating and simplifying their development.
Rethinking backup and recovery in the modern data center
Combining intelligence, operational analytics, and automation to enable efficient, data-driven IT organizations using the HP ABR approach.
Next gen security for virtualised datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.