While the European Union allows for a great deal of privacy regulation to be controlled by legislation within its member countries, there are a number of issues that it addresses across borders. Generally stricter than US privacy laws, the EU, which arguably is geared more towards commerce regulation, has put forth a great deal of effort in protecting its citizens'' individual privacy, especially in working with the US Department of Homeland Security.
Current European Union individual privacy laws state the following:
An individual must be provided with:
All data must be:
Explicit opt-in is required (with clear opportunities to opt-out at a later date) for the sharing and collection of all information and cannot be assumed. Exceptions are:
Clear, explicit privacy policies must be provided. Personal Nonpublic Data transferred to the U.S. Department of Homeland Security by airlines is restricted to 34 points and may only be used to combat the threat of terrorism or to serve warrants in the case of flight, providing protection to individual privacy.
While there is a degree of flexibility within the regulations, similar to those of the United States, the biggest difference is the requirement of an unambiguous opt-in.
In the European Union, the burden of accountability is on the business. They must obtain consumer and customer permission rather than assume complacency providing later opportunities requiring the customer to act in order to opt-out.