Get a good background to data protection law and view practical guidance focused on data protection matters for commercial transactions. See also our UK GDPR compliant pro-party clauses for use in commercial agreements.
Protect trade secrets and know-how using the law of confidentiality. Get information and a set of pro-party confidentiality agreements here.
View a range of trackers to enable horizon scanning and monitoring of key developments. The trackers are maintained - making them useful for keeping up-to-date and for business development.
It’s our online practical guidance product for contentious and non-contentious lawyers dealing with Data Protection, Confidential Information, Privacy, Cybersecurity and Freedom of Information issues.
EU Law analysis: On 27 November 2024, the European Parliament formally approved the new College of Commissioners presented by the recently re-elected...
Information Law analysis: This Court of Appeal judgment ends a long-standing appeal saga involving a fine imposed by the Information Commissioner’s...
Welcome to this week’s edition of the Information Law weekly highlights: a hand-picked summary of news analysis, updates and new content related to...
Welcome to the Information Law yearly highlights for 2024: a hand-picked chronological summary of major news analysis and updates related to laws...
MLex: The European Commission must pay €400 in damages to a user of one of its websites over the transfer of personal data to the US without the...
Environmental Information Regulations 2004—requesting informationThis Practice Note outlines guidance for private practitioners making a requests,...
Environmental Information Regulations 2004—appeals and enforcementA requestor, or more appropriately a complainant, may complain about the way a...
Environmental Information Regulations 2004—clarifying requestsUpdated in partnership with Patrick Senior of Stephenson HarwoodWhere requests under the...
Declaration of a director's interests—the statutory provisionsA director who is in any way, directly or indirectly, interested in:•a proposed...
Copyright theft and video piracyCopyright theftTheft of copyright is criminalised by the Copyright, Designs and Patents Act 1988 (CDPA 1988), the...
Environmental Information Regulations 2004, Data Protection Act 1998, Freedom of Information Act 2000—provision for disclosure by a local authority...
Environmental Information Regulations 2004—request for environmental information[Insert name of public authority][Insert public authority's address,...
Confidentiality letter—private M&A—asset purchase—corporate sellerStrictly private and confidentialTo: [insert buyer name][insert buyer address]Date:...
Confidentiality letter—private M&A—share purchase—corporate sellerStrictly private and confidentialTo: [insert buyer name][insert buyer address]Date:...
Confidentiality agreement—corporate joint ventureThis Agreement is made on [insert day and month] 20[insert year]Parties1[Insert name of first...
The UK General Data Protection Regulation (UK GDPR)—NavigatorThis Practice Note serves as a reference guide to the Retained Regulation (EU) 2016/679...
Managing a breach of confidentiality or information securityMany companies and government bodies (such as HMRC) have been exposed to loss of...
The Information Commissioner’s Office (ICO)The Information Commissioner’s Office (ICO) is the UK’s independent regulator designed to uphold...
Privacy law—misuse of private informationThe tort of misuse of private information is focused on ‘the protection of human autonomy and dignity—the...
Data protection, privacy and confidential information case law trackerThis Practice Note tracks noteworthy High Court, Court of Appeal and Supreme...
Introduction to the EU GDPR and UK GDPRThis Practice Note provides a high-level introduction to the EU’s General Data Protection Regulation,...
Key definitions under data protection lawThis Practice Note provides further guidance on key definitions used in the EU’s General Data Protection...
UK GDPR—extra-territorial reachThis Practice Note discusses the territorial scope of the regime established by the United Kingdom General Data...
Letter of claim—breach of confidence[Insert name and address of recipient]Dear [insert organisation name],[Name of client] and confidential...
Confidential information, privacy and injunctionsThis Practice Note deals with the general principles of obtaining an injunction relating to...
What does IP completion day mean for Information Law? [Archived]ARCHIVED: This Practice Note has been archived and is not maintained.11 pm (GMT) on 31...
List of data protection clauses and agreements for commercial transactions and personal data processing and sharingThis Practice Note is a...
The UK General Data Protection Regulation (UK GDPR)This Practice Note provides a summary of the UK GDPR regime. For a higher-level introduction to UK...
Trade secrets and confidential information—protection and enforcementThis Practice Note sets out the protection available for trade secrets and...
Defined under the EU GDPR and UK GDPR as one of two or more controllers that jointly determine the purposes and means of the processing of personal data.
For the purposes of the EU GDPR and UK GDPR, the natural or legal person, public authority, agency or other body which processes personal data on behalf of the controller.
Third country’ is not defined under the EU GDPR, but since the EU GDPR is a text with EEA relevance and incorporated into the EEA Agreement, it means any country (or territory) outside of the EEA. ‘Third country’ is specifically defined under the UK GDPR as a country or territory outside the UK.