Discussion about this post

User's avatar
Stephan Geering's avatar

Thank you for the thoughtful and thought-provoking post. I am fully on board with simplicity and clarity. I don't remember much from my days at university in Switzerland but one think is Eugen Huber's laudable goal to make the Swiss civil code a book that everyone can consult at home and understand. There shouldn't be any lawyers required. And look at the Swiss Data Protection Act. Not perfect, but 32 pages (https://www.fedlex.admin.ch/eli/cc/2022/491/en) and structured and printed (if you use the PDF) in a way that you can actually read the thing and find relevant clauses (hello, US lawmakers!). The ICO faces a lot of criticism, but three cheers to their focus on plain and simple language in their guidance (hello, EDPB!).

I am less on board with trying to be prescriptive and consistent. I think a good law should be risk-, outcome- and principle-based. Should the small dental practice around the corner face the same DPO, DPIA, ROPA etc. requirements as Microsoft? I am also not sure if we necessarily need better laws, more importantly to me is that regulators to collaborate better on consistent and helpful guidance that solicits input from all the stakeholders before publication (EDPB could learn from the ICO and FTC on this aspect). Many more thoughts but so little time :) Thanks again.

Expand full comment
2 more comments...

No posts