The EU AI Act Omnibus Explained: What Businesses in Europe, the UK and the US Need to Know

  On 7 May 2026, the European Parliament and the Council of the EU reached a provisional political agreement on the AI Omnibus — a targeted recalibration of the EU AI Act (Regulation (EU) 2024/1689). The reforms delay key deadlines, simplify obligations for smaller businesses, clarify how the AI Act interacts with sector-specific product [...]

DPIA vs FRIA: Key Differences, Legal Requirements, and When You Need Both

A practical guide for organisations deploying AI in Europe, the UK, Ireland, and the US. Published: May 2026  |  5–8 min read  |  Keywords: DPIA, FRIA, GDPR Art. 35, AI Act Art. 27, Fundamental Rights Impact Assessment, Data Protection Impact Assessment, High-Risk AI, EU AI Act Compliance, AI Governance, Responsible AI   [...]

Getting the Data Protection Officer Role Right: Lessons From The GDPR And A Recent Fine

Under the GDPR, the role of the Data Protection Officer (DPO) plays a central part in how organisations are expected to govern data. Ignoring the rules on designation, independence, and support doesn’t just create theoretical risks. It can lead to penalties worth millions. What the GDPR Requires: Designation, Position, and Responsibilities of the DPO Not [...]

2025-03-26T13:30:23+01:00March 26th, 2025|Data Protection, DPO, GDPR, Uncategorized|

DPIA 101

What is a DPIA? Data Protection Impact Assessments (DPIA) are crucial processes that help companies manage how they handle personal data and identify and minimize risks to rights and freedoms before launching new products or services. This process allows companies to manage how they handle personal data and demonstrates their General Data Protection Regulation (GDPR) [...]

2024-09-24T20:11:13+01:00May 31st, 2024|DPIA, DPO, Privacy|

Decoding DPO Necessity: Is Your Organization on the List?

In the dynamic realm of data protection, the Irish Data Protection Commission (DPC) emphasised on the pivotal role of the Data Protection Officer (DPO). While smaller businesses may not require a full-time DPO, understanding the conditions for a mandatory appointment is crucial. Requirement for the DPO: the processing is carried out by a public authority [...]

2024-09-25T20:44:59+01:00January 11th, 2024|Data Governance, Data Protection, DPO, GDPR, Personal data, Privacy|