European Data Protection Watch Dog Outlaws E-Mail Content Screening
Client Alert | 2 min read | 03.16.06
On 21 February 2006, the Article 29 Data Protection Working Party (“the Working Party”), issued an opinion on email content screening, virus scanning and spam filtering.
Email Screening
The Working Party takes the view that:
- content screening to trace unlawful material, or material that is unwanted to e-mail recipients, even if conducted without human intervention, is not a necessary technical and organizational requirement to safeguard security of e-mail services, and requires the prior consent of the users of the communications service, or a specific legal basis (e.g. screening for public security purposes); and
- the use of e-mail services that allow the sender of e-mails to covertly track operations conducted by the e-mail recipient, such as tracking of opening, reading, or forwarding of e-mails, is not lawful.
From a privacy perspective, the Working Party is concerned that “e-mail service providers may become censors of private e-mail communications, by for example blocking communications whose content may be completely lawful, raising fundamental questions of freedom of speech, expression and information.”
The Opinion affects a broad range of services provided by internet or e-mail service providers, including content scanning for purposes of direct marketing, but it is unclear how the it will affect local and international corporations that use automated screening tools to scan employee e-mail traffic to ensure compliance with ethical policies and US security breach legislation.
Virus Scanning
The Working Party takes the view that virus scanning is a legitimate practice under the service providers' obligations to take appropriate technical and organization measures to safeguard the security of their services.
Spam Filtering
Spam filtering is generally also considered lawful, but the Working Party stipulates the following recommendations that enhance individuals' choice with respect to such filtering:
- provide subscribers with an opportunity (i) to opt-out of e-mail scanning for spam prevention purposes; (ii) to check e-mails deemed to constitute spam to ascertain whether they should be effectively considered spam; and (iii) to determine the types of unwanted e-mails that should be filtered out;
- develop filtering tools allowing end users their installment or configuration in the terminal equipment or in third party servers or in the provider's e-mail server, enhancing users' control of the e-mails they want to receive; and
- provide adequate notice of e-mail screening for anti-spam purposes to subscribers. ESPs should also ensure the confidentiality of filtered e-mails which may not be used for other purposes.
Insights
Client Alert | 3 min read | 09.15.25
On August 19, 2025, the U.S. Senate Committee on Finance (“Senate Finance Committee”) sent Paul Atkins, Chairman, U.S. Securities and Exchange Commission (“SEC”) a letter calling on the SEC to investigate White River Energy Corp (“White River”). In the letter, the Senate Finance Committee confirmed a criminal investigation into White River related to the sale of so-called “tribal tax credits” that according to both Congress and the IRS, do not exist. The letter further states that White River allegedly earned millions of dollars selling these credits and has not been forthcoming with investors regarding the existence of the criminal investigation. According to the Senate Finance Committee, White River has failed to file financial disclosure documents with the SEC since March 15, 2024, missing six consecutive reporting periods. The letter instructs White River to disclose the existence of the DOJ criminal tax investigation, and calls on the SEC to take action if White River fails to do so.
Client Alert | 4 min read | 09.12.25
SBA’s OHA Further Defines Extraordinary Action in SDVOSB Appeal
Client Alert | 6 min read | 09.11.25
U.S. Department of Commerce Partially Relaxes Export Controls on Syria
Client Alert | 9 min read | 09.11.25