Feeds

Google tickled with TINY fine from French privacy watchdog

Pathetic penalty is a record figure for CNIL, apparently

Boost IT visibility and business value

Google's failure to comply with France's data protection law over the ad giant's 2012 privacy policy tweak has landed it with a minuscule fine of just €150,000.

In September, Commission Nationale de l’Informatique et des Libertés (CNIL) warned Google that it would face a monetary penalty after it refused to comply with the French data regulator's demands.

CNIL had opened an investigation into Google's brazen move – on behalf of the European Union's Article 29 Working Party – to determine whether the company had violated data laws when it made the changes to its service in March 2012, despite a public outcry.

The watchdog said today that it had ordered Mountain View to "publish a communique on this decision on its homepage Google.fr, within eight days of its notification."

Google was told about the fine on 3 January. The CNIL said:

This financial penalty is the highest which the Committee has issued until now. It is justified by the number and the seriousness of the breaches stated in the case.

It added that the company's privacy policy had violated several legal requirements, including failing to comply with its obligation to obtain user consent to store cookies on their devices and to define retention periods applicable to the data which Google processes.

The regulator also disputed Google's claim that the law was not applicable to its services because, CNIL said, French legislation applied to the processing of netizens' personal data in that country.

Last month, Google was fined a piddling €900,000 for three separate breaches of Spain's Data Protection Act.

The penalty came after data cops in the Netherlands had similarly concluded that Google had breached its DP law.

Three other EU countries (UK, Germany and Italy) are still mulling over enforcement actions against the Larry Page-run firm. ®

The essential guide to IT transformation

More from The Register

next story
The Return of BSOD: Does ANYONE trust Microsoft patches?
Sysadmins, you're either fighting fires or seen as incompetents now
Microsoft: Azure isn't ready for biz-critical apps … yet
Microsoft will move its own IT to the cloud to avoid $200m server bill
Oracle reveals 32-core, 10 BEEELLION-transistor SPARC M7
New chip scales to 1024 cores, 8192 threads 64 TB RAM, at speeds over 3.6GHz
Docker kicks KVM's butt in IBM tests
Big Blue finds containers are speedy, but may not have much room to improve
US regulators OK sale of IBM's x86 server biz to Lenovo
Now all that remains is for gov't offices to ban the boxes
Gartner's Special Report: Should you believe the hype?
Enough hot air to carry a balloon to the Moon
Flash could be CHEAPER than SAS DISK? Come off it, NetApp
Stats analysis reckons we'll hit that point in just three years
Dell The Man shrieks: 'We've got a Bitcoin order, we've got a Bitcoin order'
$50k of PowerEdge servers? That'll be 85 coins in digi-dosh
prev story

Whitepapers

5 things you didn’t know about cloud backup
IT departments are embracing cloud backup, but there’s a lot you need to know before choosing a service provider. Learn all the critical things you need to know.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Build a business case: developing custom apps
Learn how to maximize the value of custom applications by accelerating and simplifying their development.
Rethinking backup and recovery in the modern data center
Combining intelligence, operational analytics, and automation to enable efficient, data-driven IT organizations using the HP ABR approach.
Next gen security for virtualised datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.