ICO: Fines for cookie law breakers "unlikely"
As the deadline to comply with the new EU cookie laws loom, data protection watchdog insists firms aren't at risk from fines.
Whether or not the ICO decides to take action on a non-compliant website depends on the intrusiveness of the cookie, how much distress it causes and to how many people, said Smith.
"What's much more likely is that we will [issue a notice] that says, in effect, you must remove these cookies or obtain proper consent [from users]," said Smith. "If [they] don't comply with that notice, that becomes a criminal offence and the Commissioner would prosecute."
He also revealed that the ICO will write to 50 "key websites" over the next few days to find out what moves they have made to comply with the new requirements.
"[These are websites] where we see no signs that they have the right steps in place, [and we will be] asking them what they are doing and asking them to respond to us within 28 days," he said. "We will then review them and decide what action to take."
Nick Pickles, director of civil liberties at campaign group Big Brother Watch, said the ICO's soft approach to enforcement could impact on website visitors' privacy rights.
"It's important that a pragmatic approach to enforcement is not seen as an excuse to continue tracking people without their consent," he told IT Pro
"Businesses have already had 12 months to bring their websites into line with the new rules, so we expect people to be taking the deadline seriously and gaining proper consent for the information they want to gather."
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
-
HPE's new Cray system is a pocket powerhouseNews Hewlett Packard Enterprise (HPE) had unveiled new HPC storage, liquid cooling, and supercomputing offerings ahead of SC25
-
High performance and long battery life: How Dell AI PCs offer the best of both worldsUnlocking the true potential of on-device AI requires a perfect balance between software and hardware
-
23andMe 'failed to take basic steps' to safeguard customer dataNews The ICO has strong criticism for the way the genetic testing company responded to a 2023 breach.
-
AI recruitment tools are still a privacy nightmare – here's how the ICO plans to crack down on misuseNews The ICO has issued guidance for recruiters and AI developers after finding that many are mishandling data
-
“You must do better”: Information Commissioner John Edwards calls on firms to beef up support for data breach victimsNews Companies need to treat victims with swift, practical action, according to the ICO
-
LinkedIn backtracks on AI training rules after user backlashNews UK-based LinkedIn users will now get the same protections as those elsewhere in Europe
-
UK's data protection watchdog deepens cooperation with National Crime AgencyNews The two bodies want to improve the support given to organizations experiencing cyber attacks and ransomware recovery
-
ICO slams Electoral Commission over security failuresNews The Electoral Commission has been reprimanded for poor security practices, including a failure to install security updates and weak password policies
-
Disgruntled ex-employees are using ‘weaponized’ data subject access requests to pester firmsNews Some disgruntled staff are using DSARs as a means to pressure former employers into a financial settlement
-
ICO reprimands Coventry school over repeated data protection failuresNews The ICO said the academy trust failed to follow previous guidance, which caused a serious data breach