All articles
15. 2. 2018
2 min read

Facebook misused personal data in Germany

Even though the GDPR has not yet entered into force, the field of security and the legitimacy of working with personal data is becoming more intense. And existing laws are enough to do it.


According to a German court, Facebook violated data protection law. It did not obtain informed consent for the use of some of this data. Worldwide news agencies reported this, citing a statement by the German consumer protection association VZBV.

The Berlin court reportedly ordered a modification of the conditions for the handling of personal data, in the event of non-compliance with which Facebook faces a fine of up to 6.5 million Kroner for each confirmed offence.

In Germany, technology, IT and marketing companies in general are now coming under scrutiny from the authorities for their handling of personal data they use to better target online advertising.

“Facebook hides privacy-invasive default settings in the menu and doesn’t provide enough information about them the moment a user signs up. This does not fulfill the essence of informed consent,” said Heiko Dünkel of the VZBV.

According to the court, it is unlawful to track a user’s location when communicating privately via an online app or displaying user profiles in internet search engine results. Facebook, however, stressed that much has changed since the trial began in 2015, and more changes are to come. Facebook plans to appeal the ruling.

This example just goes to show that you really need to focus on working with personal data and not underestimate it, as the rules are going to get much stricter with the advent of GDPR. Whether you’re a huge global company or a family business with two employees, the rules are the same! If you want to avoid problems, be prepared and ideally contact experts to help you.

Source:novnky.cz

Have a project?

Get in touch and we'll discuss how we can help.
Contact us

More articles

1 Aug 2026

Cyber Resilience Act: New Rules for Secure Software and Digital Products

The European Union is introducing another important regulation in the field of cybersecurity. It is called the Cyber Resilience Act, or CRA for short, and applies to all products with a digital component. This means not only smart devices, but also software, applications, and systems that connect to a network or communicate with another service…
Read the article
15 Jul 2026

Withdrawal button – Wontilles responds in advance to new legislative requirements

The legislative environment in the field of e-commerce is undergoing constant changes, which place high demands on online shop operators.
Read the article
1 Jun 2026

Railsformers at the Faculty of Arts at the OU: Ruby on Rails in practice and now also in IT business

At the Faculty of Science of the University of Ostrava, we have long been giving students practical experience with Ruby on Rails development and showing them what it looks like to work on real web applications. From the original pilot course, we have developed a stable course Ruby on Rails I and II, which we…
Read the article