/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Dutch data protection agency says it found that Windows 10 may still be unlawfully collecting user data, refers Microsoft to its EU privacy regulator in Ireland

The Dutch data protection agency has asked Microsoft's lead privacy regulator in Europe to investigate ongoing concerns it has attached to how Windows 10 gathers user data.

TechCrunch Natasha Lomas

Context & Ripple Effects

This referral is the latest move in a years-long European campaign against Windows 10 telemetry. The French CNIL served Microsoft formal notice over Windows 10 privacy failings back in 2016 (served notice for Windows 10 privacy failings), and after Microsoft's earlier defense that its collection practices were lawful (Microsoft defended its data collection practices), it added a privacy dashboard and granular controls in the Creators Update (added a privacy dashboard and granular controls).

What changed is the enforcement route: rather than acting alone, the Dutch agency is handing the case to Ireland's regulator, which leads GDPR supervision of Microsoft across the EU. The same Dutch authority's earlier probe into hidden telemetry already triggered an EU-wide investigation into Microsoft products used by EU institutions (triggered an EU investigation into Microsoft products used by EU institutions), and the EDPS later found the Commission's own use of Microsoft 365 breached privacy rules (EDPS found the Commission's Microsoft 365 use breached privacy rules) — so this referral lands on a regulator with a documented track record of concern.

First-order effects

  • Ireland's data protection commission now carries the investigative burden as lead EU regulator, and Microsoft faces a formal GDPR examination of Windows 10 data gathering that could end in corrective orders or fines.

Second-order effects

  • A finding against Windows 10 would pressure Microsoft's other EU-exposed products — the EU-institutions probe and the EDPS Microsoft 365 ruling show regulators are treating telemetry practices as a portfolio problem, not a single-product one.

Third-order effects

  • If national agencies keep referring big-platform cases to the lead regulator, Europe's one-stop-shop mechanism consolidates into fewer, higher-stakes rulings that set de facto telemetry and consent standards for all OS vendors selling into the EU.

The trend: European regulators are escalating from piecemeal national notices to coordinated, lead-regulator enforcement of how operating systems collect user data.

Discussion

  • @mikaelarage Mikael Arage on x
    Dutch regulator: potential privacy breach in Microsoft Windows. Well, there isn't any greater confirmation of breach than employees of Microsft know what's in your windows computer, and gossip about it. We knew it's a long time coming. https://reut.rs/2HuABv3
  • @stephenglahn Geo Steve on x
    I was just forced into another #Microsoft “update"- with MS saying that my versions “would not be supported” past this fall. Dutch regulator sees potential privacy breach in Microsoft Windows https://reut.rs/2HuABv3
  • @laukaya Laura Kayali on x
    Dutch data protection authority asked Ireland's DPA to investigate Microsoft's Windows for potential privacy violations. “We will shortly be engaging further with Microsoft to seek substantive responses on the concerns raised,” the @DPCIreland said. https://www.politico.eu/...
  • @ansaoisaonta An Saoi Saonta on x
    As Microsoft accounts for perhaps 10% of Irish GDP, in the order of 2% of all tax paid, anything it does is significant.
  • @maliciarogue @maliciarogue on x
    “Microsoft has complied with the agreements made,” DPA said. “However, the check also brought to light that Microsoft is remotely collecting other data from users. As a result, Microsoft is still potentially in breach of privacy rules.” https://www.reuters.com/...
  • @florencebonnet Florence Bonnet on x
    Dutch regulator sees potential #privacy breach in Microsoft Windows. Microsoft welcomes the opportunity to improve even more the tools and choices it offers to its users https://reut.rs/2HuABv3