Privacy Law Salon: Privacy Roundtable Materials Archive

2017 Reference Materials

A New Global Privacy Regulatory Environment

ICO, Overview of the General Data Protection Regulation (Oct. 2016),

Paul M. Schwartz, Risk and High Risk: Walking the GDPR Tightrope, IAPP Privacy Perspectives (March 29, 2016),

European Commission, EC launches EU-U.S. Privacy Shield: stronger protection for transatlantic data flows, Jul. 12, 2016,

EC, Fact Sheet, European Commission, EU-US Privacy Shield (July 2016),

Privacy by Design

Sarah Spiekermann and Lorrie Faith Cranor, Engineering Privacy, 35(1) IEEE Transactions on Software Engineering (Jan. 2009),

Daniel J. Solove, Privacy by Design: 4 Key Points,

New Technologies and New Privacy Challenges

Paul M. Schwartz, Microsoft, Ireland and a Level Playing Field for U.S. Cloud Companies, Bloomberg BNA Privacy and Security Law Report, (Aug. 2016.),

Paul M. Schwartz, The delayed revolution in digital financial services, TechCrunch, Apr. 9, 2016,

Hot Topics

Daniel J. Solove and Danielle K. Citron, Risk and Anxiety: A Theory of Data Breach Harms, Dec. 14, 2016,

Ira Rubinstein, The Future of Self-Regulation is Co-Regulation, in The Cambridge Handbook of Consumer Privacy (CUP Forthcoming 2017),

Daniel J. Solove & Woodrow Harzog, The Future of the FTC on Privacy and Security,

Chris Hoofnagle, The Federal Trade Commission’s Inner Privacy Struggle,

2016 Reference Materials

New Directions in Privacy Law

FTC, Big Data: A Tool for Inclusion or Exclusion? (Jan. 2016)
In the Matter of Nomi Technologies, Inc. (FTC 2015)
Case Documents
Press Release 

The Internet of Things, Robotics, Al and New Paradigms of Privacy and Security

Ryan Calo, Robotics and the Lessons of Cyberlaw, 103 Calif. L. Rev. 513-63 (2015)
Woodrow Hartzog, Unfair and Deceptive Robots, 74 Maryland L. Rev. – (2015)  

The Future of Cybersecurity

Orin Kerr, How does the Cybersecurity Act of 2015 change the Internet surveillance laws?
Daniel J. Solove, The Kafkaesque Sacrifice of Encryption Security in the Name of Security

Safe Harbor 2.0? The Future of US-EU Data Sharing

General Data Protection Regulation (GDPR)
Maximillian Schrems v. Data Protection Commissioner
Daniel J. Solove, 10 Implications of the New EU General Data Protection Regulation (GDPR)

2015 Reference Materials

Daniel J. Solove & Paul M. Schwartz, Privacy and Security Developments (Nov. 24, 2014) [Link]
Overview of new developments in the field; the first of many more periodic issues

California Attorney General, California Privacy Legislation Enacted in 2014 [Link]
List of 10+ statutes pertaining to privacy and data security enacted by California in 2014

Byrne v. Avery Center for Obstetrics and Gynecology, No. 18904, 2014 WL 5507439 (Conn. Nov. 11, 2014) [Link]
The Connecticut Supreme Court held that HIPAA could be used as a basis in establishing the standard of care for negligence.

Daniel J. Solove, Lawsuits for HIPAA Violations and Beyond: A Journey Down the Rabbit Hole (Nov. 18, 2014) [Link]
Post about Byrne v. Avery Center

Briefs in FTC v. Wyndham Worldwide Corp., on Appeal to 3rd Circuit
Wyndham’s Brief  [Link]
FTC’s Brief  [Link]

Eduardo Ustaran, The Privacy Challenges of the New European Commission, Chronicle of Data Protection (Hogan Lovells, Nov. 4, 2014) [Link]
Identifies challenges to the new regulatory framework for data protection.

NY Times Special Section on Data Security (Dec. 2, 2014) [Link]
Includes many feature articles

Scott Goss, Data Protection Law Errors in Google Spain LS, Google Inc. v. Agencia Espanola de Proteccion de Datos, Mario Costeja Gonzalez, Future of Privacy Forum (2014)  [Link]
Detailed analysis of the Google Spain “right to be forgotten” case

NY Times, Room for Debate, Is Big Data Spreading Inequality? [Link]
Featuring Chris Wolf, Danielle Citron, Solon Barocas, among others

NY Times, Room for Debate, Privacy and the Internet of Things [Link]
Featuring Julie Brill and Ryan Calo, along others

2014 Reference Materials

Session #1
• Alessandro Acquisti, What Is Privacy Worth?
Session #2
• Woodrow Hartzog & Frederic D. Stutzman, Obscurity by Design, 88 Washington L. Rev. 385 (2013)
Comments of the Future of Privacy Forum Re: Internet of Things
• Christopher Wolf & Jules Polonetsky, An Updated Privacy Paradigm for the Internet of Things
Session #3
• Paul M. Schwartz & Daniel J. Solove, Reconciling Personal Information in the United States and European Union , 102 California L. Rev. (forthcoming 2014)
• Paul M. Schwartz, EU Privacy and the Cloud: Consent and Jurisdiction Under the Proposed Regulation, 12 PVLR 718 (Apr. 28, 2013)
Session #4
• Daniel J. Solove, Privacy Self-Management and the Consent Dilemma, 126 Harvard L. Rev. 1880 (2013)
• Paul Schwartz, The “California Effect” on Privacy Law