Haku
- Fess-haku
-
21.5.2026 | Eduskuntapuolueille lähetettiin 19. toukokuuta kysely, jolla selvitetään, miten henkilötietojen käsittelyn avoimuutta koskevat velvoitteet on huomioitu puolueiden toiminnassa.https://tietosuoja.fi/-/henkilotietojen-kasittelyn-lapinakyvyytta-selvittava-kysely-lahetetty-eduskuntapuolueille
-
19.3.2026 | Euroopan tietosuojaviranomaiset selvittävät tänä vuonna, kuinka organisaatiot noudattavat läpinäkyvyyttä ja avoimuutta koskevia velvoitteitaan henkilötietojen käsittelyssä. Yhteinen selvitys toteutetaan 25 maassa eri puolilla Eurooppaa.https://tietosuoja.fi/-/tietosuojavaltuutetun-toimisto-selvittaa-henkilotietojen-kasittelyn-lapinakyvyytta-osana-eu-n-laajuista-toimenpidetta
-
Lawfulness, fairness and transparency The processing of personal data shall be lawful, fair and transparent. Lawfulness The processing of personal data must be done in compliance with the EU’s General Data Protection Regulation and other legislati...https://tietosuoja.fi/en/lawfulness-fairness-and-transparency
-
19.3.2026 | This year, European data protection authorities will investigate how well organisations comply with the transparency and information obligations related to personal data processing. Data protection authorities from 25 countries across Europe will take part in the action.https://tietosuoja.fi/en/-/the-office-of-the-data-protection-ombudsman-to-investigate-the-transparency-of-personal-data-processing-as-part-of-eu-wide-action
-
Regulation on political advertising and the powers of the Data Protection Ombudsman The EU regulation on the transparency and targeting of political advertising sets out rules on how political advertising may be targeted. The Data Protection Ombud...https://tietosuoja.fi/en/regulation-on-political-advertising
-
The Digital Services Act and powers of the Data Protection Ombudsman in the monitoring of online platforms The EU Digital Services Act (DSA) imposes obligations on digital service providers, such as online platforms, to improve the transparency an...https://tietosuoja.fi/en/digital-services-act
-
3.2.2026 | Högsta förvaltningsdomstolen upphävde i december dataombudsmannens och förvaltningsdomstolens avgöranden om behandlingen av uppgifter om försäkrings-sökandens hälsa. Högsta förvaltningsdomstolen anser att försäkringsbolagen får behandla hälsouppgifter direkt med stöd av dataskyddslagen då en person ansöker om en frivillig försäkring. Dataombudsmannen påminner om att behandlingen av hälsouppgifter ska vara förutsägbar och transparent för försäkringssökanden.https://tietosuoja.fi/sv/-/hogsta-forvaltningsdomstolen-drog-upp-riktlinjer-for-forsakringsbolagets-ratt-att-behandla-uppgifter-om-forsakringssokandens-halsa-behandlingen-ska-vara-forutsagbar-och-transparent
-
Inform data subjects about processing The requirements of the notification practices for controllers the requirements are laid down in the GDPR. The Office of the Data Protection Ombudsman urges industries to create shared notification practices a...https://tietosuoja.fi/en/inform-data-subjects-about-processing
-
Data protection principles The data protection principles must always be observed when processing personal data . The controller must also be able to demonstrate the effective implementation of the data protection principles in the processing of p...https://tietosuoja.fi/en/data-protection-principles
-
Frequently asked questions about the Digital Services Act (DSA) What kinds of operators are subject to the DSA's obligations? The obligations imposed by the Digital Services Act (DSA) apply to all online services, referred to as 'intermediary serv...https://tietosuoja.fi/en/digital-services-act-dsa-
-
We promote responsibility in the digital environment The Office of the Data Protection Ombudsman safeguards the rights and freedoms of individuals with regard to the processing of personal data. We build awareness of the rights, duties and opportu...https://tietosuoja.fi/en/mission-statement
-
EU digital and data regulation The EU's digital and data regulation facilitate the movement of data within the EU, create clear and fair rules for data use and promote compliance with privacy, data protection and competition rules. Digital and dat...https://tietosuoja.fi/en/eu-digital-and-data-regulation
-
Purpose limitation The purpose of processing personal data must be planned and defined clearly before the start of processing. Personal data may only be collected and processed for a specific and lawful purpose. The data may not be processed in a ...https://tietosuoja.fi/en/purpose-limitation
-
The right to obtain information on the processing of personal data Data subjects have the right to be informed of the collection and processing of their personal data. The processing of personal data shall be done in a transparent manner. Data sub...https://tietosuoja.fi/en/the-right-to-obtain-information-on-the-processing-of-personal-data
-
Roles and responsibilities for processing personal data in scientific research A research project can involve a variety of parties in different roles. Personal data may be processed for research purposes by one or more research organizations, pers...https://tietosuoja.fi/en/roles-and-responsibilities-for-processing-personal-data
-
Current issues Supreme Administrative Court upholds the administrative fine imposed on Verkkokauppa.com for data protection violations Publication date: 12.6.2026 Deputy Data Protection Ombudsman: individuals must be able to access their credit in...https://tietosuoja.fi/en/current-issues
-
Rätten att få information om behandlingen av personuppgifter En registrerad har rätt att få information om insamling och behandling av hans eller hennes personuppgifter. Behandlingen av personuppgifter ska vara transparent. En registrerad ska info...https://tietosuoja.fi/sv/ratten-att-fa-information-om-behandlingen-av-personuppgifter
-
Defining the research scheme and purpose for processing personal data Processing personal data for purposes of scientific research must comply with the requirement of purpose limitation. The purpose of processing personal data must be planned and ...https://tietosuoja.fi/en/defining-the-research-scheme-and-purpose-for-processing-personal-data
-
Controller's legitimate interests The processing of personal data can sometimes be justified due to the legitimate interests of the controller or a third party. The use of legitimate interests as a basis for processing requires particularly carefu...https://tietosuoja.fi/en/controller-s-legitimate-interests
-
Berätta om behandlingen för den registrerade Kraven för informationspraxis för personuppgiftsansvariga fastställs i den allmänna dataskyddsförordningen. Dataombudsmannens byrå uppmuntrar de olika branscherna att skapa gemensam informationspraxis t...https://tietosuoja.fi/sv/beratta-om-behandlingen-for-den-registrerade