1. Home
  2. |Insights
  3. |EU Member States Approve EU-U.S. Privacy Shield

EU Member States Approve EU-U.S. Privacy Shield

Client Alert | 1 min read | 07.08.16

Today, the European Union (EU) Member States in their function as the Article 31 Committee approved the final version of the EU-U.S. Privacy Shield, the new framework for transatlantic data transfers. It is set to replace the U.S.-EU Safe Harbor which the European Court of Justice invalidated in October 2015. Today’s vote by the Article 31 Committee, which was an important prerequisite for the formal adoption, paves the way for the European Commission’s adequacy decision, which is expected to take place early next week. The European Commission stated that, “Both consumers and companies can have full confidence in the new arrangement, which reflects the requirements of the European Court of Justice. Today’s vote by the Member States is a strong sign of confidence.” The European Commission also noted that during the adoption process it consulted as broadly as possible, “taking on board the input of key stakeholders, notably the independent [Member State] data protection authorities and the European Parliament.” The Commission likely hopes its final consultations and changes will satisfy potential opponents to the new program.

Insights

Client Alert | 13 min read | 06.12.26

EU Cyber Resilience Act Countdown: 11 September 2026 Incident/Vulnerability Reporting Deadline Less Than 100 Days Away

The EU Cyber Resilience Act (CRA) is an EU product cybersecurity law for connected products (formally, “products with digital elements” under the CRA) commercialized in the EU; it entered into force on 10 December 2024, with direct application across the EU. Full application begins 11 December 2027, but one of its most operationally demanding provisions takes effect in just under 100 days, on 11 September 2026: the mandatory vulnerability and incident reporting under Article 14 CRA....