AGL 38.00 No Change ▼ 0.00 (0%)
AIRLINK 213.91 Increased By ▲ 3.53 (1.68%)
BOP 9.42 Decreased By ▼ -0.06 (-0.63%)
CNERGY 6.29 Decreased By ▼ -0.19 (-2.93%)
DCL 8.77 Decreased By ▼ -0.19 (-2.12%)
DFML 42.21 Increased By ▲ 3.84 (10.01%)
DGKC 94.12 Decreased By ▼ -2.80 (-2.89%)
FCCL 35.19 Decreased By ▼ -1.21 (-3.32%)
FFBL 88.94 No Change ▼ 0.00 (0%)
FFL 16.39 Increased By ▲ 1.44 (9.63%)
HUBC 126.90 Decreased By ▼ -3.79 (-2.9%)
HUMNL 13.37 Increased By ▲ 0.08 (0.6%)
KEL 5.31 Decreased By ▼ -0.19 (-3.45%)
KOSM 6.94 Increased By ▲ 0.01 (0.14%)
MLCF 42.98 Decreased By ▼ -1.80 (-4.02%)
NBP 58.85 Decreased By ▼ -0.22 (-0.37%)
OGDC 219.42 Decreased By ▼ -10.71 (-4.65%)
PAEL 39.16 Decreased By ▼ -0.13 (-0.33%)
PIBTL 8.18 Decreased By ▼ -0.13 (-1.56%)
PPL 191.66 Decreased By ▼ -8.69 (-4.34%)
PRL 37.92 Decreased By ▼ -0.96 (-2.47%)
PTC 26.34 Decreased By ▼ -0.54 (-2.01%)
SEARL 104.00 Increased By ▲ 0.37 (0.36%)
TELE 8.39 Decreased By ▼ -0.06 (-0.71%)
TOMCL 34.75 Decreased By ▼ -0.50 (-1.42%)
TPLP 12.88 Decreased By ▼ -0.64 (-4.73%)
TREET 25.34 Increased By ▲ 0.33 (1.32%)
TRG 70.45 Increased By ▲ 6.33 (9.87%)
UNITY 33.39 Decreased By ▼ -1.13 (-3.27%)
WTL 1.72 Decreased By ▼ -0.06 (-3.37%)
BR100 11,881 Decreased By -216 (-1.79%)
BR30 36,807 Decreased By -908.3 (-2.41%)
KSE100 110,423 Decreased By -1991.5 (-1.77%)
KSE30 34,778 Decreased By -730.1 (-2.06%)

Amid online privacy concerns, Europeans can breathe easy. A citadel of pro-consumer regulations, the European Union (EU) is now on its way to harness the tech titans, who happen to be in a bit of a scramble these days. Indeed, the EU’s implementation last week of data protection rules under the ‘General Data Protection Regulation’ (GDPR) directive has given rest of the world, and Pakistan, a template to follow.

The EU bosses are rightly treating ‘data protection’ as a fundamental right. They intend to form a ‘digital single market’ by enforcing GDPR on all companies – both tech and non-tech – no matter where they are based, so long as they are handling user data or tracking user behavior within EU. Companies are claiming compliance burden and face potential penalties; but GDPR clearly has the users’ back.

For instance, a personal data breach would now necessitate that the user be informed of the same if the user’s well being is put in danger.

User can now ask a company to erase their data in case it erroneously represents them. Besides this so-called ‘right to be forgotten’, users can also demand their data back or ask for that data to be transferred to another company.
Perhaps, the most significant GDPR provision requires companies to take users’ informed consent before handling their personal data for internal and/or external use. It notes, “…silence or inactivity will no longer be considered as valid consent as a clear affirmative action to express the consent is required…”

Taking user consent will ensure that companies do away with legalese one finds in long-winding terms & conditions; instead, they will cut to the chase: ask for permission in clear and concise manner.

This ‘opt-in’ regulation is where tech giants like Facebook and Google might stumble. On these platforms, it’s ‘all or nothing’ – that is, users have to agree/check all the boxes to be able to use their platform.

Companies are also required to tell their users as to what purposes their data will be processed and with whom it will be shared. This will likely have negative impact on digital advertising and mass marketing, with a positive spillover on conventional advertising media.

In Pakistan, data protection is a major concern. Existing laws – such as the Prevention of Electronic Crimes Act, 2016 – don’t go too far. The recent, belated release of the Digital Pakistan Policy leaves it for the next government to enact the envisaged data protection and privacy laws.

Meanwhile, episodes like the Careem data breach earlier this year threaten privacy of individuals partaking in online economy.

In addition, it is feared that users’ personal data is sold to third parties by unscrupulous individuals at telecom and broadband operators, thus violating user privacy and fueling spam.

Surely, Pakistan doesn’t enjoy the kind of economic muscle and policing capacity that the EU has. But GDPR is common-sense regulation which can be implemented through a dedicated, serious-minded data protection agency. If the EU’s regulations catch up with other developed economies, it may force tech firms to follow the same data-protection protocols in developing countries.

But that likelihood is perhaps years away. The onus is now on the next government to ensure safety & security of online users.

Copyright Business Recorder, 2018

Comments

Comments are closed.