
Can AI Models Comply with EU Law at All?
Hello all, and happy Thursday!
Read NowGet an overview of the simple, all-in-one data privacy platform
Manage consent for data privacy laws in 50+ countries
Streamline and automate the DSAR workflow
Efficiently manage assessment workflows using custom or pre-built templates
Streamline consent, utilize non-cookie data, and enhance customer trust
Automate and visualize data store discovery and classification
Ensure your customers’ data is in good hands
Key Features & Integrations
Discover how Osano supports CPRA compliance
Learn about the CCPA and how Osano can help
Achieve compliance with one of the world’s most comprehensive data privacy laws
Key resources on all things data privacy
Expert insights on all things privacy
Key resources to further your data privacy education
Meet some of the 5,000+ leaders using Osano to transform their privacy programs
A guide to data privacy in the U.S.
What's the latest from Osano?
Data privacy is complex but you're not alone
Join our weekly newsletter with over 35,000 subscribers
Global experts share insights and compelling personal stories about the critical importance of data privacy
Osano CEO, Arlo Gilbert, covers the history of data privacy and how companies can start a privacy program
Upcoming webinars and in-person events designed for privacy professionals
The Osano story
Become an Osanian and help us build the future of privacy!
We’re eager to hear from you
Published: April 10, 2025
Hello all, and happy Thursday!
Increasingly, the major software providers that underpin the internet and modern business are leaning into data privacy.
Just recently, Microsoft announced it would be enforcing the provision of user consent signals starting May 5th. Basically, if you use Microsoft Advertising, Invest, Curate, or Monetize on your website, Microsoft will no longer accept data from website visitors based out of the EEA, UK, or Switzerland—unless you obtain affirmative opt-in consent first.
Obviously, this will be a greater or lesser concern for businesses depending on where their traffic comes from. But even if you don’t use Microsoft on your site and don’t receive visitors from the aforementioned regions, this news should still matter to you for two reasons:
Microsoft’s announcement also calls out how businesses can manage user consent with their technology—but that approach requires fiddling with your tag manager or your website code, and it only applies to Microsoft data trackers.
(Incidentally, did you know that Osano provides a consent management platform that makes it easy to manage consent for all users and across all data trackers?)
Best,
Arlo
Most of us are privacy pros plus—plus AI, plus GRC, plus security, and on and on and on. We face different challenges than professionals who solely focus on data privacy compliance. Get more time in your day with these strategies for success.
AI and shifting regulations are dominating headlines, but a bigger transformation is happening in compliance—and businesses that fail to adapt will be left behind. Tom Fox, founder of Compliance Podcast Network, talks to Arlo Gilbert about this shift.
In our second Privacy Pro Survival Summit, we’re putting the personal in personal data and showcasing a suite of thought leaders and experts from privacy, security, GRC, and related experts. Learn, connect with your peers, and maybe have a little fun along the way!
Save your seat | Today!
Federal Trade Commission (FTC) Chairman Andrew Ferguson said he's keeping an eye on 23andMe's bankruptcy proceeding and the company's planned sale because of privacy concerns related to genetic testing data. 23andMe and its future owner must uphold the company's privacy promises, Ferguson said in a letter sent yesterday to representatives of the US Trustee Program, a Justice Department division that oversees the administration of bankruptcy proceedings.
President Donald Trump has for a second time extended the deadline that would have required TikTok to be sold or face a ban in the US. A bipartisan law passed by Congress last year mandates TikTok's Chinese parent company, ByteDance, sell the app. Trump intervened and delayed the ban until April 5, and now he has now granted another 75-day extension until June. Read more
Microsoft Advertising has announced that starting May 5, 2025, it will require all websites using its tracking tools to send a “consent signal” whenever someone from the European Union, United Kingdom, or Switzerland visits. Tracking technologies from Microsoft, Google, and Meta are commonly used across a wide range of websites (such as Microsoft’s Universal Event Tracking [UET] tag) —whether or not those sites actively target users in Europe.
The 4th U.S. Circuit Court of Appeals temporarily reinstated Elon Musk's Department of Government Efficiency (DOGE) access to Americans' private data held by the Treasury and Education Departments and the Office of Personnel Management. This overturns an earlier ruling that had blocked DOGE's access to the data. Critics are concerned about the potential misuse of sensitive information, including Social Security numbers, income details, and addresses, which could be used for political purposes.
The Information Commissioner’s Office (ICO) recently announced a fine of 3 million GBP (3.9 million USD) against a software provider for security deficiencies following a ransomware incident. This is the first time the ICO has fined a processor under the UK’s General Data Protection Regulation (GDPR).
There's more to explore:
We go deeper into additional privacy topics with incredible guests monthly. Available on Spotify or Apple.
The book inspired by this newsletter: Osano CEO, Arlo Gilbert, covers the history of data privacy and how companies can start building a privacy program from the ground up. More details here.
If you’re interested in working at Osano, check out our Careers page!
Arlo Gilbert is the CEO & co-founder of Osano. An Austin, Texas native, he has been building software companies for more than 25 years in categories including telecom, payments, procurement, and compliance. In 2005 Arlo invented voice commerce, he has testified before congress on technology issues, and is a frequent speaker on data privacy rights.
Osano is used by the world's most innovative and forward-thinking companies to easily manage and monitor their privacy compliance.
With Osano, building, managing, and scaling your privacy program becomes simple. Schedule a demo or try a free 30-day trial today.