SITTIG LAW

BLOG

Current contributions

dsgvo checklist agency

GDPR checklist for agencies

The GDPR checklist helps agencies to fulfill their data protection obligations securely. From order processing contracts and technical and organizational measures to the implementation of data subject rights - structured processes protect against risks, fines and reputational damage. This makes data protection a real competitive advantage for every agency.

How long can a revision take

How long can an audit take?

Appeal proceedings usually take between six months and two years. Decisive factors are the complexity of the case, the scope of the complaints and the workload of the court. The appeal only reviews legal errors, not new evidence. Strict deadlines and precise legal reasoning are decisive for success and duration.

data transfer dsgvo compliant

Data transfer GDPR-compliant

GDPR-compliant data transfers require a clear legal basis, transparent information obligations and tested protective measures, especially for third country transfers. According to Schrems II, companies must assess transfer risks, use DPAs and SCCs correctly and use technical measures such as encryption. Careful documentation and regular audits ensure compliance and strengthen the trust of customers and partners.

Data protection agreement IT service provider

Data protection agreement IT service provider

A data protection agreement with IT service providers is mandatory under Art. 28 GDPR as soon as personal data is processed on behalf of a processor. It regulates powers of instruction, technical and organizational measures and liability. Missing or incomplete contracts can result in fines, reputational damage and data protection violations - regular reviews are essential.

data protection and ki: what to look out for in practice

Data protection and AI: what to look out for in practice

Artificial intelligence offers enormous opportunities, but requires strict data protection measures. The GDPR and EU AI Act set clear requirements for data processing, transparency and risk management. Companies must integrate data protection into AI development from the outset, check the legal basis and carry out regular data protection impact assessments in order to avoid fines and reputational risks.

Revision rejected what happens next

Appeal rejected - what happens next?

Following the rejection of the appeal, the judgment is final, but there are still options: A constitutional appeal to the Federal Constitutional Court, a retrial or a petition for clemency. All legal remedies are subject to tight deadlines and conditions - early legal advice is therefore crucial for further chances of success.

Hamburg location
Head office
Martinistrasse 11
20251 Hamburg
Phone: +49 (0) 40 808 125 550
Fax: +49 (0) 40 808 125 559
Kassel location
Branch office
Motzstrasse 1
34117 Kassel
Phone: +49 (0) 561 510 053 80
Fax: +49 (0) 561 510 053 99
Frankfurt location
Branch office
Oeder Weg 11
60318 Frankfurt am Main
Phone: +49 (0) 69 710 471 070
Fax: +49 (0) 69 710 471 079