German watchdog orders Worldcoin to delete data collected illegally

The Bavarian data protection authority has ruled that World must implement a GDPR-compliant data deletion procedure for iris scans, emphasizing that users now have unrestricted rights to erase their biometric information. This decision reinforces European fundamental rights standards in the face of complex technological challenges, mandating that World secure explicit consent for future processing and delete records collected without a sufficient legal basis during its initial operational phase. World has appealed the ruling, arguing that the current lack of a clear legal definition for anonymization under EU law hinders privacy-preserving innovation. The company contends that its Privacy Enhancing Technologies effectively anonymize data, allowing human verification without compromising user privacy. They assert that without judicial clarity on what constitutes true anonymization, the industry loses a critical tool for protecting individuals in the age of artificial intelligence. This case is highly relevant to open data because it highlights the tension between regulatory compliance and the potential for privacy-enhancing technologies. As open data initiatives increasingly rely on anonymization to share information responsibly, this dispute underscores the urgent need for standardized definitions. Clear guidelines are essential to ensure that data can be shared openly and safely without violating individual privacy rights or stifling technological progress.

Source: cointelegraph.com
Published on 2024-12-20