Google Fined €403m over Location Data
Ireland’s Data Protection Commission (DPC) has fined Google €403m ($463m) for violating EU privacy rules in its processing of users’ location data. It is the fourth-largest fine imposed by the Irish regulator since the General Data Protection Regulation (GDPR) came into force in 2018.
The DPC found that Google infringed GDPR rules between 2018 and 2020 through three features: Web & App Activity, Location History and Location Accuracy.
According to DPC Deputy Commissioner Graham Doyle, Google’s failures may have left users unaware that their location data was being used, for example, to target them with advertising or infer their interests. As a result, they may have lost control over their personal data. The DPC also found that retaining location data for longer than necessary aggravated that loss of control.
The regulator opened its investigation in 2020 following complaints from several European consumer organizations. It also ordered Google to bring its data processing into compliance with the rules within six months.
Google is also subject to three other ongoing DPC investigations, all of which are at an advanced stage.
(Reuters, max)