Skip to content

Swiss Chinese Law Association — Geneva

SCLA | Swiss Chinese Law Association

Legal Observatory / AI and Data

Legal Update European Union Regulatory guidance

EDPB Launches Dedicated Form to Report GDPR Interpretation Inconsistencies Across Europe

The EDPB launched a dedicated contact form for stakeholders to report inconsistent interpretations of the GDPR across Europe.

What Changed

  • EDPB launched a dedicated contact form to collect reports on national and EU-level GDPR interpretation divergences.
  • Collected submissions will be compiled for high-level EDPB discussion without individual replies.
  • The announcement highlights a 403 000 000 EUR fine against Google in Ireland, a 100 000 EUR fine against Securitas Direct in Spain, and new DSA-GDPR guidelines.

The European Data Protection Board (EDPB) has launched a dedicated contact form designed to enable stakeholders to report potential inconsistencies in how the General Data Protection Regulation (GDPR) is interpreted across Europe. Announced in Brussels on 24 June, this initiative fulfills commitments set out in the EDPB Helsinki Statement on enhanced clarity, support and engagement, which aims to improve stakeholder dialogue and foster consistent GDPR enforcement.

The new reporting mechanism allows stakeholders to submit reports regarding alleged divergences between different national positions, as well as discrepancies between national positions and guidance issued by the EDPB. Although the EDPB will not provide individual responses to submissions, the submitted information will be compiled regularly and evaluated at a high level by Board members to determine potential measures for improving regulatory consistency across European jurisdictions.

Alongside the launch of the contact form, the source highlights key enforcement and regulatory actions across the European Union:

1. The Irish Data Protection Commission imposed a fine of 403 000 000 EUR on Google following an inquiry into its processing of location data.

2. The Spanish Data Protection Authority (DPA) fined Securitas Direct 100 000 EUR for making the exercise of data subject rights more difficult by directing individuals to a chargeable telephone number.

3. The EDPB harmonised its fining methodology and adopted final Digital Services Act (DSA)-GDPR guidelines.

This reporting tool provides cross-border organizations and legal professionals operating within the European Union a direct platform to notify European regulatory leadership of inconsistent application of data protection law.

Who May Be Affected

Stakeholders, legal professionals, and businesses operating across EU Member States subject to GDPR oversight.

Cross-Border Context

Relevant to businesses and legal practitioners handling cross-border data processing within the European Union where national DPAs may interpret GDPR provisions differently.

What to check next

  • Access the EDPB dedicated contact form directly on the EDPB website.
  • Review the text of the EDPB Helsinki Statement on enhanced clarity, support and engagement.
  • Examine the final EDPB DSA-GDPR guidelines and harmonised fining methodology.

This article provides general information and does not constitute legal advice. Consult the official text and obtain advice appropriate to your circumstances where needed.

Keep the issues that matter to you in view

Subscribe to SCLA updates and choose your interests.