the journal · data protection, cybersecurity, ai governance
Insights & articles.
The latest developments in data protection, cybersecurity and AI governance, read by the people who advise on them. We also publish through EU-funded work in our research projects practice.
10 jul 2026blogImmutable by Design, Non-Compliant by Default? EDPB Guidelines 02/2025 on BlockchainOn 7 July 2026, the European Data Protection Board adopted the final version of its Guidelines 02/2025 on the processing of personal data through blockchain technologies, closing a process that began with a first public version in April 2025 and ran through a public consultation from 14 April to 9 June 2025. In this post, …11 min 2 jul 2026white paperAI Governance in Practice: Insights from the WLC Webinar SeriesArtificial intelligence is now embedded in everyday work across most organisations, often without formal approval or oversight. Employees draft, summarise, and make decisions with AI tools, while legal and risk teams face new questions about contracts, liability, and exposure that traditional software governance was never designed to answer. This shift matters because AI does not …1 min 2 jul 2026blogThe EDPB Helsinki Statement: What It Is, What It Changed, and What It Means for Your OrganisationIf you’ve been paying attention to the GDPR compliance landscape lately, you’ve probably noticed several new initiatives arriving in quick succession: a common template and IT submission portal for personal data breach notifications, a standardised template for conducting and documenting Data Protection Impact Assessments (DPIAs), and, most recently, a dedicated contact form inviting organisations to …8 min 3 jun 2026webinarWebinar: AI in Legal, Contracts, Liability and RiskWebinar Description AI is already reshaping the contracts landing on lawyers’ desks. Vendors are pushing back on liability clauses, refusing to account for AI-generated outputs, and presenting terms that standard software contract frameworks were never designed to handle. Legal teams are being asked to advise on deals and assume responsibility for risks that existing templates …5 min 6 may 2026blogThe DIFC Autonomous Systems Officer: What the DIFC Commissioner’s Office ASO Survey Tells Us About the Role, the Skills, and the CostBetween March and May 2025, the DIFC Commissioner’s Office surveyed businesses operating within its jurisdiction to understand the current state and perceptions of AI (autonomous and semi-autonomous systems) usage and governance. The result is the DIFC Autonomous Systems Officer (ASO) Survey Report 2025: a detailed look at what DIFC establishments expect from AI governance roles, …4 min 20 apr 2026white paperProtecting Children Online: How Organisations Can Build a Global Data Protection and Digital Safety FrameworkChildren are building permanent digital profiles before they are old enough to understand what that means. Every interaction, what they watch, search, click, and share, is captured, analysed, and retained. Over time, this creates behavioural profiles that can influence opportunities, shape experiences, and follow them well into adulthood. The risk isn’t just the …1 min 8 apr 2026webinarWebinar on AI Risk Assessments in PracticeWebinar Description This session will focus on how organisations can design and implement effective AI risk assessments in practice. We will explore what a robust assessment should include and clarify the differences between DPIAs and broader model risk assessments. The discussion will also address how to scale assessments across multiple AI use cases, particularly when …3 min 6 mar 2026webinarGoverning AI in the Workplace in PracticeWebinar Description Artificial Intelligence is rapidly becoming part of everyday work: embedded in HR platforms, decision-support systems, recruitment tools, and increasingly through generative AI used directly by employees. While many organisations are experimenting with AI, far fewer have established clear governance frameworks that work in practice. Questions around legal compliance, ethical risks, acceptable use, and …4 min 25 feb 2026blogAI Law in Vietnam: What Businesses Need to KnowVietnam is no longer a regulatory blank slate for artificial intelligence. In December 2025, the country officially passed its Law on Artificial Intelligence, set to take effect on 1 March 2026. For businesses operating in or entering the Vietnamese market, whether domestic or foreign, this marks a decisive shift: AI moves from an unregulated domain …5 min 6 feb 2026blogChild Digital Safety Meets Data Protection: The UAE’s New Child Digital Safety LawIntroduction The UAE has recently issued the Federal Decree-Law No. 26 of 2025 on Child Digital Safety (“CDS Law”), which is a significant step towards enhancing children’s digital safety and privacy rights. Notably, the law places children’s privacy at the forefront of digital regulation, treating the handling of minors’ personal data as a core risk area rather …5 min 16 jan 2026blogDIFC Regulation 10 Explained: Certification, Scope, and ComplianceThe regulatory landscape for artificial intelligence and autonomous systems in the DIFC is changing rapidly. With the introduction of DIFC Regulation 10, organisations that use autonomous or semi-autonomous systems to process personal data must reassess how their AI systems are designed, governed, and deployed. Regulation 10 came into force on 1 September 2023, with a …4 min 3 dec 2025white paperInternational Data Transfers After the “Digital Omnibus” Reform, A More Coherent, Risk-Based Framework for Global Data FlowsWhite Label Consultancy partners Magdalena Góralczyk and Nicholai Pfeiffer, drawing on extensive experience advising on complex cross-border data ecosystems, examine how the European Commission’s proposed Digital Omnibus reform may reshape the practical landscape for international data transfers. In this new White Paper, they unpack how the Omnibus’ clarifications on identifiability, pseudonymisation, and technical safeguards may …1 min
showing 12 of 92 entries
page 1 of 8
Ready to protect
your organisation?
Leave us a note and we will get back to you. Our consultants are ready to discuss your data protection, cybersecurity and AI governance needs.