Google was fined 403 million euros (about $463 million) by Ireland’s Data Protection Commission for breaching the EU’s General Data Protection Regulation by mishandling location data. The probe, opened six years ago and covering how Google applied GDPR from its 2018 start until February 2020, found that Google did not lawfully, fairly or transparently process location information collected through Web & App Activity and Location History, and similarly failed to handle personal data properly in the Android Location Accuracy feature. Ireland acted as lead regulator because Google’s European headquarters is in Dublin.
Google said the case concerns historical policies it has since updated and pointed to changes from 2019 onward, including new tools to help users manage location settings. The regulator emphasized that location data can yield significant private insights and can both benefit and harm individuals. The fine is the fourth-largest issued by Ireland’s watchdog - smaller than penalties previously levied on TikTok and Meta (including a €1.2 billion fine for Meta) - and the commission still has three other ongoing privacy investigations involving Google.
Summary generated by AI from the linked article. hn.today is not affiliated with Hacker News or Y Combinator.