IDC Names Securiti a Worldwide Leader in Data Privacy
ViewOn 16 March 2022, the Latvian data protection authority, Data State Inspectorate (DVI) published Guidance on the use of cookies by goods and service providers and a model cookie policy that can be used by websites. The guidance outlines categories and types of cookies for which user’s consent is required, applicable conditions for the use of cookies on websites, the use of consent tools including consent management platforms, as well as methods of obtaining consent. According to the DVI, it is pertinent that users pay attention and read cookie policies in detail, to decipher which data controllers are ‘trustworthy’. It also further states that this guidance is relevant for data controllers that process personal data on their websites on a daily basis.
Some of the key takeaways of the Guidelines are as follows:
Controllers may use a multi-layered approach to ensure transparency. Multi-layer cookie notifications can help address the issue of overloading of information by allowing users to switch directly to the section of the notification they want to read. The layers should contain the following:
1. First Layer : This layer is to include information provided prior to the use of cookies and must be stored until consent or refusal is provided. It must contain the name of the manager (controller) provided that the controller’s identification data is not clearly indicated in other sections of the website; purposes of the use of cookies; categories of cookies (whether they are first-party or third-party cookies); general information about types of data collected and when user profiling is used; mechanism for users to accept, set and reject cookies; a link connecting to the second information level which contains information such as the "Cookie Policy" or access to the cookie setup panel. As per the DVI, an example of a good practice compliant cookie banner (first layer) is:
We use our own and third-party cookies to store your shopping history and use information about your previously purchased products to advise you on other products that we believe will be of interest to you. To learn more about our cookie policy, please click on the "More information" button.
You can agree to all cookies by clicking on the "Agree" button or reject by clicking the "Disagree" button.
If the website user clicks on the "Disagree" button, the website stores the technical cookies that are necessary to ensure the operation of the site and the use of which does not require the user's consent.
2. Second Layer: This layer is to include information that must be permanently available on the website. It must include the Cookie Policy; the purpose of cookies; the identity of the recipients of the cookies; information on how to confirm, refuse or withdraw consent to the use of cookies; information on consequences if the user refuses to consent to cookies; information about the period of storage of cookies; information pertaining to third-party transfers (including cross-border transfers) of personal data; profiling information related to automated decision-making which can have a significant impact on users.
In order to ensure that the cookie banner complies with the applicable legal requirements, data controllers must give equal prominence to “Agree”, “Disagree” and “More Information” buttons on the cookie consent banner. This means that these buttons should be in the same font and color fill, without any accents.
This obligation requires data controllers to outline such information in an intelligible manner and appropriate language for the users before they are offered the opportunity to consent or refuse consent. The DVI has also provided a model cookie policy on their website for further clarification.
Securiti’s Cookie Consent Banner Solution enables companies to build cookie consent banners in accordance with the applicable legal requirements. It can help you comply with the Latvian Guidance on the use of cookies with the help of the following features:
Ask for a DEMO today to understand how Securiti can help you comply with consent requirements of global data privacy laws and regulations, with ease.
Get all the latest information, law updates and more delivered to your inbox
July 15, 2023
In today’s privacy-aware world, an individual’s consent has become an integral part of any organization dealing with customer data. It refers to the authorization...
May 3, 2023
Lately, the Federal Trade commission (FTC) has taken an increased interest in protecting the consumers’ digital health information by cracking down on companies deploying...
April 16, 2023
The Office for Personal Data Protection ('UOOU') in the Czech Republic updated its list of frequently answered questions ('FAQs') on cookie bars and consent...
At Securiti, our mission is to enable enterprises to safely harness the incredible power of data and the cloud by controlling the complex security, privacy and compliance risks.
Copyright © 2023 Securiti · Sitemap · XML Sitemap
[email protected]
300 Santana Row Suite 450. San Jose,
CA 95128