The Austrian privacy advocacy group, None of Your Business (noyb), has filed complaints against companies including TikTok, AliExpress, SHEIN, Temu, WeChat, and Xiaomi, accusing them of breaching EU data protection laws.
The complaints, filed in Austria, Belgium, Greece, Italy, and the Netherlands, allege these companies unlawfully transfer user data to China, exposing it to potential government access.
Noyb highlights that China lacks an independent data protection authority and operates as a surveillance state, rendering such transfers incompatible with EU data protection standards. The group also claims the companies failed to respond to requests under the General Data Protection Regulation (GDPR) for transparency about the data transfers.
The advocacy group is urging the immediate suspension of these transfers, stating, “Transferring Europeans’ personal data to China is clearly unlawful – and must be terminated immediately.”
Additionally, the issue emerges as TikTok prepares to shut down its app in the U.S. by January 19, 2025, following a federal ban. Noyb has previously targeted tech giants like Google, Microsoft, and Mozilla for GDPR violations.
FTC Takes Action Against GM and GoDaddy
In the U.S., the Federal Trade Commission (FTC) has banned General Motors from sharing driver data, including geolocation and behavioral information, with consumer reporting agencies for five years. This comes after investigations revealed data sharing with brokers for creating risk profiles that influenced auto insurance rates. GM discontinued its “Smart Driver” program in April 2024 due to public feedback and now allows customers to delete their data via a consumer privacy form.
The FTC also directed website host GoDaddy to implement a robust security overhaul after repeated customer data breaches from 2019 to 2022. The company must strengthen its practices, including using multi-factor authentication and improving threat monitoring.
Enhanced Privacy Protections for Children
The FTC has updated the Children’s Online Privacy Protection Rule (COPPA), requiring platforms to gain parental consent before using children’s data for advertising or sharing it with third parties. The new rules mandate that companies retain children’s information only for as long as necessary and prohibit monetization without explicit parental approval. FTC Chair Lina M. Khan emphasized these changes are vital for protecting children’s digital privacy.
















Comments