{"id":11706,"date":"2026-04-21T10:32:33","date_gmt":"2026-04-21T08:32:33","guid":{"rendered":"https:\/\/techgdpr.com\/?p=11706"},"modified":"2026-04-21T10:32:34","modified_gmt":"2026-04-21T08:32:34","slug":"data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines","status":"publish","type":"post","link":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/","title":{"rendered":"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines"},"content":{"rendered":"\n<h4 class=\"wp-block-heading\">EU age verification app<\/h4>\n\n\n\n<p>The European Commission has announced that a new age verification <a href=\"https:\/\/commission.europa.eu\/news-and-media\/news\/european-age-verification-app-keep-children-safe-online-2026-04-15_en\">app designed to protect children online is \u2018technically ready\u2019 and will soon be available for citizens to use<\/a>. The app will allow users to prove their age when accessing online platforms, helping protect children from harmful or inappropriate content. It <strong>can be set up with a passport or ID card, enabling users to prove their age when accessing online services<\/strong>.&nbsp;<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><a href=\"#newslettersignup\"><mark style=\"background-color:#faeade;color:#cea1fa\" class=\"has-inline-color\">Stay up to date! Sign up to receive our fortnightly digest via email.<\/mark><\/a><\/h4>\n\n\n\n<p>Reportedly, the app is &#8216;completely anonymous&#8217;, works on any device, and is fully open source. Cyber and privacy experts, however, immediately examined the <a href=\"https:\/\/github.com\/eu-digital-identity-wallet\/av-app-android-wallet-ui\">source code<\/a> on the GitHub software platform and reported several issues with the app&#8217;s design, including <a href=\"https:\/\/www.politico.eu\/article\/eu-brussels-launched-age-checking-app-hackers-say-took-them-2-minutes-break-it\/\">low cybersecurity standards and the possibility of bypassing the app\u2019s biometric authentication<\/a> features.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">Unjustified parking fines through automated means<\/h4>\n\n\n\n<div class=\"wp-block-media-text is-stacked-on-mobile\" style=\"grid-template-columns:30% auto\"><figure class=\"wp-block-media-text__media\"><img decoding=\"async\" width=\"1024\" height=\"768\" src=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/hans-park-6092-1024x768.jpg\" alt=\"\" class=\"wp-image-11715 size-full\" srcset=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/hans-park-6092-1024x768.jpg 1024w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/hans-park-6092-300x225.jpg 300w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/hans-park-6092-768x576.jpg 768w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/hans-park-6092-1536x1152.jpg 1536w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/hans-park-6092-2048x1536.jpg 2048w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><div class=\"wp-block-media-text__content\">\n<p><\/p>\n\n\n\n<p>The <a href=\"https:\/\/www.autoriteitpersoonsgegevens.nl\/actueel\/honderdduizenden-onterechte-boetes-door-scanautos\">deployment of scanning vehicles to check parked cars has resulted in an estimated 500,000 unjustified fines<\/a>. This is evident from a new thematic study by the Dutch Data Protection Authority AP. Municipalities carry out an estimated 250 to 375 million scans yearly. This results in 3 to 5 million parking fines per year.\u00a0 According to calculations, more than 10 per cent of these are unjustified. People who object to the fine are successful in 40 to 62 per cent of cases.\u00a0<\/p>\n<\/div><\/div>\n\n\n\n<p><strong>A scanning vehicle only takes a snapshot, and the algorithms in the monitoring system do not see the circumstances.<\/strong> As a result, a scanning vehicle cannot, for example, determine that someone is loading or unloading. In such a situation, an exception may apply. The disabled parking permit, which is not registered to the license plate by default and is placed behind the windshield, is also not &#8216;seen&#8217; by the scanning vehicle. If payment has not been made, the systems are unforgiving, and a fine follows automatically.&nbsp;<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">Other legal updates<\/h4>\n\n\n\n<p><strong>Alabama comprehensive privacy law: <\/strong>The Alabama Personal Data Protection Act (<a href=\"https:\/\/www.vitallaw.com\/news\/governor-signs-alabama-consumer-data-privacy-bill-into-law\/cspd014d424a8090c044ffba9a7b56e66001bb\">APDPA) was enacted on April 16<\/a>. It includes one of the lowest applicability thresholds for businesses in the US that:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>handle personal data of more than 25,000 consumers (excluding data processed solely for completing a payment transaction), or\u00a0<\/li>\n\n\n\n<li>derive more than 25% of gross revenue from selling personal data.\u00a0<\/li>\n<\/ul>\n\n\n\n<p>From 1 May 2027, it will empower a consumer to confirm whether a controller is processing any of the consumer\u2019s personal data, correct inaccuracies, delete, obtain a copy, and opt out of the processing of their data. Controllers will be required to respond to consumer requests within 45 days, with a possible 45-day extension, and provide a secure and reliable method for consumers to exercise their rights; the analysis from <a href=\"http:\/\/vitallaw.com\">vitallaw.com<\/a> sums up.&nbsp;<\/p>\n\n\n\n<p><strong>Scientific research in the EU: <\/strong>&nbsp;The EDPB has, in the meantime, adopted <a href=\"https:\/\/www.edpb.europa.eu\/our-work-tools\/documents\/public-consultations\/2026\/guidelines-12026-processing-personal-data_en\">Guidelines on processing of personal data for scientific research purposes<\/a>.&nbsp; Many areas of scientific research rely on the processing of individuals\u2019 personal data. In the guidelines, the EU data protection regulator provides clarifications on the:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>concept of \u2018scientific research\u2019\u00a0\u00a0<\/li>\n\n\n\n<li>further processing for scientific research purposes\u00a0\u00a0<\/li>\n\n\n\n<li>reliance on \u201cbroad consent\u201d where the purposes of research are not fully known\u00a0<\/li>\n\n\n\n<li>rights of individuals to erasure and objection when their personal data are processed for scientific purposes\u00a0<\/li>\n\n\n\n<li>qualifications of data controller, joint controllers or processors.<\/li>\n<\/ul>\n\n\n\n<p>The guidelines will be subject to <a href=\"https:\/\/www.edpb.europa.eu\/our-work-tools\/documents\/public-consultations\/2026\/guidelines-12026-processing-personal-data_en\">public consultation<\/a> until 25 June.&nbsp;<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">DPIA template<\/h4>\n\n\n\n<p>The EDPB has also adopted a template for <a href=\"https:\/\/www.edpb.europa.eu\/our-work-tools\/documents\/public-consultations\/2026\/edpb-dpia-template_en\">Data Protection Impact Assessments (DPIA)<\/a>. The template will help organisations structure, harmonise and substantiate their DPIA reporting processes. The template is complemented by an <a href=\"https:\/\/www.edpb.europa.eu\/our-work-tools\/documents\/public-consultations\/2026\/edpb-dpia-template_en\">explainer document<\/a> providing concise explanations for completing this template effectively, by breaking down key concepts in a simple language and addressing possible questions and knowledge gaps controllers might have.<\/p>\n\n\n\n<p>Controllers can conduct their risk analysis and management processes as they prefer, using the DPIA methodology of their choice. A <a href=\"https:\/\/techgdpr.com\/blog\/difference-fundamental-rights-impact-assessment-dpia\/\">DPIA<\/a> is a process required in situations where the processing is likely to result in a high risk, to describe how personal data will be processed, assess whether the processing is necessary and appropriate, and <strong>identify and reduce risks to individuals\u2019 rights and freedoms<\/strong>.\u00a0<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">Frontier AI systems<\/h4>\n\n\n\n<div class=\"wp-block-media-text is-stacked-on-mobile\" style=\"grid-template-columns:30% auto\"><figure class=\"wp-block-media-text__media\"><img decoding=\"async\" width=\"1024\" height=\"702\" src=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-1024x702.png\" alt=\"age verification\" class=\"wp-image-11713 size-full\" srcset=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-1024x702.png 1024w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-300x206.png 300w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-768x527.png 768w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-1536x1053.png 1536w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2.png 2048w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><div class=\"wp-block-media-text__content\">\n<p><\/p>\n\n\n\n<p>According to the Guardian, British banks will be given access in the next week to <a href=\"https:\/\/www.theguardian.com\/technology\/2026\/apr\/17\/finance-leaders-warn-over-claude-mythos-as-uk-banks-prepare-to-use-powerful-anthropic-ai-tool\">Antropic\u2019s latest AI tool, highly skilled at cyber-security and hacking tasks<\/a>, that was deemed too dangerous to be released to the public. Advances in the Claude Mythos model capabilities have come with concerns about hackers <strong>using such tools to figure out passwords or crack encryption meant to keep data safe<\/strong>. <\/p>\n<\/div><\/div>\n\n\n\n<p><\/p>\n\n\n\n<p>Anthropic, which has so far <a href=\"https:\/\/www.theguardian.com\/technology\/2026\/apr\/08\/anthropic-ai-cybersecurity-software\">limited the release<\/a> of the new model to a small clutch of primarily US businesses, including Amazon, Apple and Microsoft, said it would expand that to UK financial institutions. UK regulators are due to raise the issue of Mythos\u2019s risks with bank bosses and government officials in the coming weeks.\u00a0<\/p>\n\n\n\n<p>According to the presented results, Mythos can <a href=\"https:\/\/www.ncsc.nl\/nieuws\/anthropics-frontiermodel-mythos-vraagt-om-directe-actie\">detect vulnerabilities faster and link them into complete exploits and attack chains<\/a>. This can strengthen defences, but can also accelerate digital attacks.&nbsp; Defenders can deploy AI to detect vulnerabilities earlier and remedy them faster. But attackers with access to similar models will scale up investigation, identification, and exploitation as well. To that end, the Dutch National Cyber \u200b\u200bSecurity Centre suggests practical steps to adopt:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Explicitly incorporate AI developments into your security measures, particularly<strong> patch management; <\/strong>delaying action by days or weeks no longer fits the current threat landscape.<\/li>\n\n\n\n<li>Anticipate attacks that occur faster, more automatically, and in larger numbers, for example, in the detection of <strong>anomalous behaviour in networks<\/strong>.<\/li>\n\n\n\n<li><strong>Maintain solid basic security <\/strong>and supplement it with appropriate additional measures, as attackers already use AI to improve and automate existing techniques.\u00a0\u00a0<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\">More official guidance<\/h4>\n\n\n\n<p><strong>Secure database configurations: <\/strong>The German Federal Office for Information Security (BSI) has published a collection of <a href=\"https:\/\/github.com\/BSI-Bund\/securitydatabaseconfigurations.git\">secure configurations for database systems<\/a>. It provides recommendations for optimally configuring <strong>encryption, authentication, authorisation, and other security-relevant aspects<\/strong>. It serves as a template for securely operating the database management systems MariaDB, MongoDB, and Weaviate. The repository is continuously being developed and will be expanded to include support for other database management systems.<\/p>\n\n\n\n<div class=\"wp-block-media-text is-stacked-on-mobile\" style=\"grid-template-columns:30% auto\"><figure class=\"wp-block-media-text__media\"><img decoding=\"async\" width=\"1024\" height=\"654\" src=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-1024x654.jpeg\" alt=\"\" class=\"wp-image-11709 size-full\" srcset=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-1024x654.jpeg 1024w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-300x191.jpeg 300w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2-768x490.jpeg 768w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-2.jpeg 1280w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><div class=\"wp-block-media-text__content\">\n<p><\/p>\n\n\n\n<p><strong>Healthcare institutions&#8217; data security audit:<\/strong> The Lithuanian State Data Protection Inspectorate VDAI carried out 10 scheduled audits of the security measures of healthcare institutions. Security checks related to <a href=\"https:\/\/vdai.lrv.lt\/lt\/naujienos\/vdai-atlikusi-sveikatos-prieziuros-istaigu-stebesena-teikia-rekomendacijas-9Qv\/\">access control, backup management, and event log management were assessed<\/a>. As a result, several areas for improvement were identified:<\/p>\n<\/div><\/div>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Only 11% of institutions use multi-factor authentication (MFA).<\/li>\n\n\n\n<li>Only 56 % of institutions centrally store and encrypt log entries.<\/li>\n\n\n\n<li>67% of institutions have implemented automated alerts for suspicious events.<\/li>\n\n\n\n<li>78 % of institutions have a log entry management policy and review it regularly.<\/li>\n\n\n\n<li>78% of institutions document backup and recovery procedures.<\/li>\n<\/ul>\n\n\n\n<p><strong>Pixel tracking: <\/strong>The French data protection authority CNIL publishes the final version of its recommendations on tracking pixels in emails (in French). The tracking pixel is an alternative tracking method to cookies, usually implemented in the form of a reduced image (1 pixel by 1 pixel). Loading this image, which contains a user ID, tracks a user when they visit a page or read an email. This technique is used for <a href=\"https:\/\/www.cnil.fr\/fr\/recommandation-pixel-suivi-courriels\">personalising communication according to the interests of users, measuring the audience, improving the proper reception of emails<\/a>, etc.&nbsp;<\/p>\n\n\n\n<p>The recommendation specifies <strong>the cases in which consent will be required for the use of tracking pixels in emails and those which are exempt. <\/strong>It also specifies the procedures for withdrawing consent.&nbsp;&nbsp;<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">In other news<\/h4>\n\n\n\n<div class=\"wp-block-media-text is-stacked-on-mobile\" style=\"grid-template-columns:30% auto\"><figure class=\"wp-block-media-text__media\"><img decoding=\"async\" width=\"1024\" height=\"661\" src=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-1-1024x661.jpeg\" alt=\"\" class=\"wp-image-11707 size-full\" srcset=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-1-1024x661.jpeg 1024w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-1-300x194.jpeg 300w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-1-768x496.jpeg 768w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-1.jpeg 1280w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><div class=\"wp-block-media-text__content\">\n<p><\/p>\n\n\n\n<p><strong>Data breaches on the rise: <\/strong>The Estonian data protection agency provides an analysis of the received data breach notifications in Q1 2026. <a href=\"https:\/\/www.aki.ee\/uudised\/2026-aasta-i-kvartal-andmekaitserikkumised-kasvavad\">One of the most insidious threats in today\u2019s cyber landscape is data-stealing malware<\/a>. (eg, RedLine, Vidar). It is often downloaded onto personal devices unintentionally \u2013 through illegal software, malicious ads, or fraudulent links generated using artificial intelligence. Data thieves don&#8217;t just limit themselves to passwords: they also steal session cookies, which allow attackers to bypass even multi-factor authentication by &#8220;hijacking&#8221; the active logged-in session.<\/p>\n<\/div><\/div>\n\n\n\n<p>If employees use personal devices to check work emails or access SaaS platforms like Slack or Salesforce, a <strong>single infected home computer can compromise the entire corporate network<\/strong>.<\/p>\n\n\n\n<p><strong>Illegal GPS tracking:<\/strong> The Slovenian Information Commissioner found that one of the providers of public utilities was continuously and indiscriminately collecting location data of employees, obtained through <a href=\"https:\/\/www.ip-rs.si\/novice\/nezakonito-gps-sledenje-zaposlenim-informacijski-poobla%C5%A1%C4%8Denec-javnemu-komunalnemu-podjetju-izrekel-globo-v-vi%C5%A1ini-6000-eur-1776238559\">GPS transmitters installed in company vehicles, without clearly defining the purpose of the data processing<\/a>. Employees were not properly informed about the scope and purpose of such tracking. Besides, the objectives could be achieved with less stringent measures (eg, manual entries, use of vehicle odometer data).<\/p>\n\n\n\n<p><strong>Employee computer monitoring:<\/strong> In a similar inspection procedure, a Slovenian regulator found another employer&#8217;s covert surveillance (via Spyrix Employee Monitoring software), was carried out without a legal basis, without informing employees and to an extent that exceeded the permissible limits of interference with privacy in the workplace, as it <a href=\"https:\/\/www.ip-rs.si\/novice\/delodajalcu-ki-je-prikrito-nadzoroval-vse-aktivnosti-zaposlenih-na-ra%C4%8Dunalnikih-izre%C4%8Dena-globa-ve%C4%8D-kot-70000-eur-1775713659\">targeted the content of employees&#8217; communication via private e-mail and completely private conversations<\/a>. The regulator imposed a fine of 71,474 euros due to the violations found.&nbsp;<\/p>\n\n\n<div id=\"newslettersignup\"><\/div>\n<div id=\"role-block_4e59a968b7913d57f1ca7f64b651bf14\" class=\"text-t-black bg-t-pink p-6 md:p-12 rounded-tr-50 rounded-bl-50 mb-4 lg:mb-12 text-center role\">\n  \n      <h2 class=\"text-xl lg:text-2xl max-w-screen-lg mx-auto text-t-black font-display mb-4\">\n      Receive our digest by email\u00a0    <\/h2>\n        <h3 class=\"text-base max-w-screen-lg mx-auto text-t-black font-body mb-4\">Sign up to receive our digest by email every 2 weeks<\/h3>\n  \n  <div id=\"rmOrganism\">\n    <div class=\"rmEmbed rmLayout--vertical rmBase\">\n      <div data-page-type=\"formSubscribe\" class=\"rmBase__body rmSubscription\">\n                  <form method=\"post\" action=\"https:\/\/mailing.techgdpr.com\/145\/6351\/5e9fc3cdda\/subscribe\/form.html?_g=1698845230\" class=\"rmBase__content\">\n                  <div class=\"rmBase__container mx-auto max-w-screen-sm\">          \n            <div class=\"rmBase__section\">\n              <div class=\"text-left rmBase__el rmBase__el--input rmBase__el--label-pos-none\" data-field=\"email\">\n                <label for=\"email\" class=\"rmBase__compLabel rmBase__compLabel--hideable hidden\">\n                  Email address\n                <\/label>\n                <div class=\"rmBase__compContainer mb-2\">\n                  <input type=\"text\" name=\"email\" id=\"email\" placeholder=\"Email\" value=\"\" class=\"p-4 border rounded border-gray-400 w-full rmBase__comp--input comp__input\">\n                  <div class=\"rmBase__compError text-left font-display font-bold text-xs\"><\/div>\n                <\/div>\n              <\/div>\n            <\/div>\n            <div class=\"rmBase__section mb-4\">\n              <div class=\"rmBase__el rmBase__el--consent\" data-field=\"consent_text\">\n                <div class=\"rmBase__comp--checkbox\">\n                  <label for=\"consent_text\" class=\"flex space-x-2 items-baseline text-left vFormCheckbox comp__checkbox\">\n                    <input type=\"checkbox\" value=\"yes\" name=\"consent_text\" id=\"consent_text\" class=\"vFormCheckbox__input\">\n                    <div class=\"vFormCheckbox__indicator hidden\"><\/div>\n                    <div class=\"vFormCheckbox__label\">\n                                              I consent to the processing of my data and to receiving regular updates from TechGDPR. Data is processed according to our <a href=\"https:\/\/techgdpr.com\/privacy-policy\/\"> Privacy Notice<\/a>.                                          <\/div>\n                  <\/label>\n                <\/div>\n                <div class=\"rmBase__compError text-left font-display font-bold text-xs\"><\/div>\n              <\/div>\n            <\/div>\n            <div class=\"rmBase__section\">\n              <div class=\"rmBase__el rmBase__el--cta\">\n                <button type=\"submit\" class=\"inline-flex items-center justify-center px-8 py-3 text-white visited:text-white font-bodybold rounded-md bg-t-navy border-3 border-t-navy hover:border-t-navy hover:bg-transparent hover:text-t-navy transition-all hover:text-white cursor-pointer rmBase__comp--cta\">\n                  Subscribe\n                <\/button>\n              <\/div>\n            <\/div>\n          <\/div>\n        <\/form>\n      <\/div>\n      <div data-page-type=\"pageSubscribeSuccess\" class=\"rmBase__body rmSubscription hidden\">\n        <div class=\"rmBase__content\">\n          <div class=\"rmBase__container\">\n            <div class=\"rmBase__section\">\n              <div class=\"rmBase__el rmBase__el--heading\">\n                <div class=\"rmBase__comp--heading\">\n                  Thank you for your subscription!\n      <!-- this linebreak is important, don't remove it! this will force trailing linebreaks to be displayed -->\n                  <br>\n                <\/div>\n              <\/div>\n            <\/div>\n            <div class=\"rmBase__section\">\n              <div class=\"rmBase__el rmBase__el--text\">\n                <div class=\"rmBase__comp--text\">\n                  We have sent you an email &#8211; please confirm your email address by clicking the activation link in it.\n      <!-- this linebreak is important, don't remove it! this will force trailing linebreaks to be displayed -->\n                  <br>\n                <\/div>\n              <\/div>\n            <\/div>\n          <\/div>\n        <\/div>\n      <\/div>\n    <\/div>\n  <\/div>\n\n      <script src=\"https:\/\/mailing.techgdpr.com\/form\/145\/6069\/8a53c9178b\/embedded.js\" async><\/script>\n  \n<\/div>\n\n\n\n<h4 class=\"wp-block-heading\">Amazon multimillion fine annulled<\/h4>\n\n\n\n<p>The Administrative Court of Luxembourg has <a href=\"https:\/\/justice.public.lu\/fr\/actualites\/2026\/03\/arret-cour-administrative-amazon.html\">annulled<\/a> a 746 million euro GDPR fine imposed on Amazon, citing procedural failings by the national regulator. Judges ruled that authorities did not properly assess the company\u2019s level of fault before setting the penalty, <a href=\"https:\/\/dig.watch\/updates\/luxembourg-court-overturns-major-gdpr-fine-against-amazon\">DigWatch<\/a> News platform reports. The sanction was issued in 2021 by the national data protection commission over Amazon\u2019s targeted ad system and appealed in March 2025. While the violations were upheld, the court found the regulator failed to determine whether the conduct was intentional or negligent.\u00a0\u00a0<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">Other enforcement decisions<\/h4>\n\n\n\n<p><strong>Access to an employee&#8217;s email after the end of employment: <\/strong>An employee can access messages on their company email account and documents stored on their computer after the end of their employment. Any restrictions must be justified by specific and proven reasons, such as protecting company secrets. This is what Italy\u2019s \u2018Garante\u2019 established in accepting the complaint of a <a href=\"https:\/\/www.garanteprivacy.it\/home\/docweb\/-\/docweb-display\/docweb\/10239073\">former employee of an insurance company who had requested a copy of his company email messages and documents saved on his computer<\/a>.&nbsp;<\/p>\n\n\n\n<p>The company had accessed the former employee&#8217;s email and, after examining the contents, provided only the messages deemed &#8220;strictly personal,&#8221; excluding those related to work. According to the regulator, the right of access applies to all personal data, including communications exchanged through an individualised company account. Therefore, it is unlawful to pre-select the content to be provided, nor to limit or obscure it based on the distinction between personal and professional contexts. For the violations identified, a fine of 50,000 euros was imposed.\u00a0\u00a0<\/p>\n\n\n\n<p><strong>Face recognition in the airport:<\/strong> Garante also declared the processing of biometric data of passengers at Milan Linate Airport <a href=\"https:\/\/www.garanteprivacy.it\/garante\/doc.jsp?ID=10238246\">using the facial recognition system &#8220;FaceBoarding&#8221; to be unlawful.<\/a> The system was used to allow passengers to access the security-restricted area and board at the gate after registering at special kiosks or via an app and subsequently associating their face with their identification document and boarding pass. The system requires that the acquired biometric data be stored entirely centrally on the servers, preventing passengers from exercising exclusive control over their data.&nbsp;<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">And Finally<\/h4>\n\n\n\n<div class=\"wp-block-media-text is-stacked-on-mobile\" style=\"grid-template-columns:30% auto\"><figure class=\"wp-block-media-text__media\"><img decoding=\"async\" width=\"1024\" height=\"682\" src=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-3-1024x682.jpeg\" alt=\"age verification\" class=\"wp-image-11710 size-full\" srcset=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-3-1024x682.jpeg 1024w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-3-300x200.jpeg 300w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-3-768x512.jpeg 768w, https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/image-3.jpeg 1280w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><div class=\"wp-block-media-text__content\">\n<p><\/p>\n\n\n\n<p><strong>AI awareness: <\/strong>While almost half of internet users in Germany feel capable of recognizing AI-generated content, in reality, hardly anyone looks closely: only a minority have ever searched for inconsistencies in the image or checked the source (28 % and 19%, respectively). Knowledge about potential fraud scenarios is also limited. <strong>Only 38 per cent believe it&#8217;s possible that cybercriminals could, for example, manipulate an AI program to transmit sensitive data<\/strong>. Similarly, only 40 percent consider it conceivable that criminals could insert invisible instructions for AI systems into documents.\u00a0<\/p>\n<\/div><\/div>\n\n\n\n<p><a href=\"https:\/\/www.bsi.bund.de\/DE\/Service-Navi\/Presse\/Pressemitteilungen\/Presse2026\/260413_KI-Betrug-im-Netz.html\">In fact, both scenarios are technically possible.<\/a><\/p>\n\n\n\n<p><strong>Police data reach:<\/strong> US police have access to a wide range of databases that they can use to look up and misuse information about people. This can result in humiliating and bad decisions, sometimes causing long-term damage to people\u2019s lives. In-depth <a href=\"https:\/\/privacyinternational.org\/long-read\/5757\/dangerous-data\">research by Rights &amp; Security International and Privacy International reveals the impact of this and argues for more effective limits<\/a> on what kinds of personal information police can view, when, and why.\u00a0The US is not alone in this trend. The UK and the EU are also expanding law enforcement\u2019s data-access powers, introducing <a href=\"https:\/\/privacyinternational.org\/advocacy\/5741\/privacy-internationals-response-uk-home-office-consultation-facial-recognition\">facial-recognition surveillance<\/a> and proposing <a href=\"https:\/\/www.euractiv.com\/news\/eu-countries-reach-breakthrough-on-chat-scanning-law-despite-intense-pushback\/\">scanning of private messages<\/a>, PI resumes.\u00a0<\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>EU age verification app The European Commission has announced that a new age verification app designed to protect children online is \u2018technically ready\u2019 and will soon be available for citizens to use. The app will allow users to prove their age when accessing online platforms, helping protect children from harmful or inappropriate content. It can [&hellip;]<\/p>\n","protected":false},"author":21,"featured_media":11718,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[94],"tags":[210,51,129,126,58],"class_list":["post-11706","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-data-protection-digest","tag-age-verification","tag-artificial-intelligence","tag-consumer-data-protection","tag-dpia","tag-gdpr-compliance"],"acf":[],"featured_image_urls":{"full":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg",2560,1707,false],"thumbnail":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-150x150.jpg",150,150,true],"medium":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-300x200.jpg",300,200,true],"medium_large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-768x512.jpg",640,427,true],"large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-1024x683.jpg",640,427,true],"1536x1536":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-1536x1024.jpg",1536,1024,true],"2048x2048":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-2048x1365.jpg",2048,1365,true],"image-200-200":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-200x200.jpg",200,200,true]},"post_excerpt_stackable":"<p>EU age verification app The European Commission has announced that a new age verification app designed to protect children online is \u2018technically ready\u2019 and will soon be available for citizens to use. The app will allow users to prove their age when accessing online platforms, helping protect children from harmful or inappropriate content. It can be set up with a passport or ID card, enabling users to prove their age when accessing online services.&nbsp; Stay up to date! Sign up to receive our fortnightly digest via email. Reportedly, the app is &#8216;completely anonymous&#8217;, works on any device, and is fully&hellip;<\/p>\n","category_list":"<a href=\"https:\/\/techgdpr.com\/blog\/category\/data-protection-digest\/\" rel=\"category tag\">Data Protection Digest<\/a>","author_info":{"name":"Olya Vasylyk","url":"https:\/\/techgdpr.com\/blog\/author\/olyav\/"},"comments_num":"0 comments","featured_image_urls_v2":{"full":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg",2560,1707,false],"thumbnail":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-150x150.jpg",150,150,true],"medium":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-300x200.jpg",300,200,true],"medium_large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-768x512.jpg",640,427,true],"large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-1024x683.jpg",640,427,true],"1536x1536":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-1536x1024.jpg",1536,1024,true],"2048x2048":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-2048x1365.jpg",2048,1365,true],"image-200-200":["https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-200x200.jpg",200,200,true]},"post_excerpt_stackable_v2":"<p>EU age verification app The European Commission has announced that a new age verification app designed to protect children online is \u2018technically ready\u2019 and will soon be available for citizens to use. The app will allow users to prove their age when accessing online platforms, helping protect children from harmful or inappropriate content. It can be set up with a passport or ID card, enabling users to prove their age when accessing online services.&nbsp; Stay up to date! Sign up to receive our fortnightly digest via email. Reportedly, the app is &#8216;completely anonymous&#8217;, works on any device, and is fully&hellip;<\/p>\n","category_list_v2":"<a href=\"https:\/\/techgdpr.com\/blog\/category\/data-protection-digest\/\" rel=\"category tag\">Data Protection Digest<\/a>","author_info_v2":{"name":"Olya Vasylyk","url":"https:\/\/techgdpr.com\/blog\/author\/olyav\/"},"comments_num_v2":"0 comments","yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines - TechGDPR<\/title>\n<meta name=\"description\" content=\"TechGDPR\u2019s review of the most important data-related stories: questions rising over new EU age verification app &amp; automated parking fines\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines - TechGDPR\" \/>\n<meta property=\"og:description\" content=\"TechGDPR\u2019s review of the most important data-related stories: questions rising over new EU age verification app &amp; automated parking fines\" \/>\n<meta property=\"og:url\" content=\"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/\" \/>\n<meta property=\"og:site_name\" content=\"TechGDPR\" \/>\n<meta property=\"article:published_time\" content=\"2026-04-21T08:32:33+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-04-21T08:32:34+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2560\" \/>\n\t<meta property=\"og:image:height\" content=\"1707\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Olya Vasylyk\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@techgdpr\" \/>\n<meta name=\"twitter:site\" content=\"@techgdpr\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Olya Vasylyk\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"11 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/\"},\"author\":{\"name\":\"Olya Vasylyk\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/person\\\/07e9c14fd01b25bd2c1907537e8547e8\"},\"headline\":\"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines\",\"datePublished\":\"2026-04-21T08:32:33+00:00\",\"dateModified\":\"2026-04-21T08:32:34+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/\"},\"wordCount\":2057,\"publisher\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/geralt-eye-7173262-scaled.jpg\",\"keywords\":[\"age verification\",\"Artificial Intelligence\",\"consumer data protection\",\"DPIA\",\"GDPR Compliance\"],\"articleSection\":[\"Data Protection Digest\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/\",\"name\":\"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines - TechGDPR\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/geralt-eye-7173262-scaled.jpg\",\"datePublished\":\"2026-04-21T08:32:33+00:00\",\"dateModified\":\"2026-04-21T08:32:34+00:00\",\"description\":\"TechGDPR\u2019s review of the most important data-related stories: questions rising over new EU age verification app & automated parking fines\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/#primaryimage\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/geralt-eye-7173262-scaled.jpg\",\"contentUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/geralt-eye-7173262-scaled.jpg\",\"width\":2560,\"height\":1707,\"caption\":\"age verification\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/techgdpr.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#website\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/\",\"name\":\"TechGDPR\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/techgdpr.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#organization\",\"name\":\"TechGDPR\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/staging.techgdpr.com\\\/wp-content\\\/uploads\\\/2018\\\/04\\\/TGDPR_logo_500px.png\",\"contentUrl\":\"https:\\\/\\\/staging.techgdpr.com\\\/wp-content\\\/uploads\\\/2018\\\/04\\\/TGDPR_logo_500px.png\",\"width\":501,\"height\":334,\"caption\":\"TechGDPR\"},\"image\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/techgdpr\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/techgdpr\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/person\\\/07e9c14fd01b25bd2c1907537e8547e8\",\"name\":\"Olya Vasylyk\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2021\\\/10\\\/readyIMG_3694-1-2-150x150.jpg\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2021\\\/10\\\/readyIMG_3694-1-2-150x150.jpg\",\"contentUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2021\\\/10\\\/readyIMG_3694-1-2-150x150.jpg\",\"caption\":\"Olya Vasylyk\"},\"description\":\"Creator and editor of TechGDPR\u2019s weekly Digest. Postgraduate masters Diploma in Data Protection, Digital law and Management. Over a decade Olga previously was a broadcast journalist in Ukraine and France specializing in international affairs.\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/author\\\/olyav\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines - TechGDPR","description":"TechGDPR\u2019s review of the most important data-related stories: questions rising over new EU age verification app & automated parking fines","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/","og_locale":"en_US","og_type":"article","og_title":"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines - TechGDPR","og_description":"TechGDPR\u2019s review of the most important data-related stories: questions rising over new EU age verification app & automated parking fines","og_url":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/","og_site_name":"TechGDPR","article_published_time":"2026-04-21T08:32:33+00:00","article_modified_time":"2026-04-21T08:32:34+00:00","og_image":[{"width":2560,"height":1707,"url":"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg","type":"image\/jpeg"}],"author":"Olya Vasylyk","twitter_card":"summary_large_image","twitter_creator":"@techgdpr","twitter_site":"@techgdpr","twitter_misc":{"Written by":"Olya Vasylyk","Est. reading time":"11 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/#article","isPartOf":{"@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/"},"author":{"name":"Olya Vasylyk","@id":"https:\/\/techgdpr.com\/#\/schema\/person\/07e9c14fd01b25bd2c1907537e8547e8"},"headline":"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines","datePublished":"2026-04-21T08:32:33+00:00","dateModified":"2026-04-21T08:32:34+00:00","mainEntityOfPage":{"@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/"},"wordCount":2057,"publisher":{"@id":"https:\/\/techgdpr.com\/#organization"},"image":{"@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/#primaryimage"},"thumbnailUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg","keywords":["age verification","Artificial Intelligence","consumer data protection","DPIA","GDPR Compliance"],"articleSection":["Data Protection Digest"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/","url":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/","name":"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines - TechGDPR","isPartOf":{"@id":"https:\/\/techgdpr.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/#primaryimage"},"image":{"@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/#primaryimage"},"thumbnailUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg","datePublished":"2026-04-21T08:32:33+00:00","dateModified":"2026-04-21T08:32:34+00:00","description":"TechGDPR\u2019s review of the most important data-related stories: questions rising over new EU age verification app & automated parking fines","breadcrumb":{"@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/#primaryimage","url":"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg","contentUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2026\/04\/geralt-eye-7173262-scaled.jpg","width":2560,"height":1707,"caption":"age verification"},{"@type":"BreadcrumbList","@id":"https:\/\/techgdpr.com\/blog\/data-protection-digest-21042026-questions-rising-over-new-eu-age-verification-app-unjust-automated-parking-fines\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/techgdpr.com\/"},{"@type":"ListItem","position":2,"name":"Data protection digest 4-18 April 2026: questions rising over new EU age verification app &amp; unjust automated parking fines"}]},{"@type":"WebSite","@id":"https:\/\/techgdpr.com\/#website","url":"https:\/\/techgdpr.com\/","name":"TechGDPR","description":"","publisher":{"@id":"https:\/\/techgdpr.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/techgdpr.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/techgdpr.com\/#organization","name":"TechGDPR","url":"https:\/\/techgdpr.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/techgdpr.com\/#\/schema\/logo\/image\/","url":"https:\/\/staging.techgdpr.com\/wp-content\/uploads\/2018\/04\/TGDPR_logo_500px.png","contentUrl":"https:\/\/staging.techgdpr.com\/wp-content\/uploads\/2018\/04\/TGDPR_logo_500px.png","width":501,"height":334,"caption":"TechGDPR"},"image":{"@id":"https:\/\/techgdpr.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/techgdpr","https:\/\/www.linkedin.com\/company\/techgdpr"]},{"@type":"Person","@id":"https:\/\/techgdpr.com\/#\/schema\/person\/07e9c14fd01b25bd2c1907537e8547e8","name":"Olya Vasylyk","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/techgdpr.com\/wp-content\/uploads\/2021\/10\/readyIMG_3694-1-2-150x150.jpg","url":"https:\/\/techgdpr.com\/wp-content\/uploads\/2021\/10\/readyIMG_3694-1-2-150x150.jpg","contentUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2021\/10\/readyIMG_3694-1-2-150x150.jpg","caption":"Olya Vasylyk"},"description":"Creator and editor of TechGDPR\u2019s weekly Digest. Postgraduate masters Diploma in Data Protection, Digital law and Management. Over a decade Olga previously was a broadcast journalist in Ukraine and France specializing in international affairs.","url":"https:\/\/techgdpr.com\/blog\/author\/olyav\/"}]}},"_links":{"self":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts\/11706","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/users\/21"}],"replies":[{"embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/comments?post=11706"}],"version-history":[{"count":7,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts\/11706\/revisions"}],"predecessor-version":[{"id":11725,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts\/11706\/revisions\/11725"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/media\/11718"}],"wp:attachment":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/media?parent=11706"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/categories?post=11706"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/tags?post=11706"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}