Skip to Primary Navigation

The CNIL moves to self-assessment for consent-exempt analytics solutions

Data analytics dashboard
Photo: Getty Images

The new model places greater responsibility on providers, who must now assess their solution using a self-assessment tool provided by the regulator.

Providers of analytics solutions must now independently assess their compliance with the exemption regime, while website or application publishers remain responsible for proper implementation. That is because the CNIL (the French Data Protection Authority) is moving from its consent exemption validation program to a self-assessment model.

The CNIL introduced a

Get full access, free for a month

Start your 28-day free trial to continue reading and access
all content on GRIP – no payment details required.

What’s included:

  • Every new article, plus our 5,000+ archive
  • Daily regulatory insight and guidance
  • Exclusive interviews and in-depth analysis
  • Coverage of industry-leading events and conferences
  • All podcasts and videos, featuring industry experts
  • The full set of Rules Navigator tools
  • An ad-free experience