Full Breakdown
EU's Proposed Reforms to GDPR: Implications for Privacy and Big Tech
11/13/2025, 3:36:00 AM
Overview of Proposed Changes
The European Commission is set to unveil a legislative package known as the "Digital Omnibus" on November 19, 2025, which includes significant amendments to the General Data Protection Regulation (GDPR). These reforms aim to ease compliance burdens for businesses, particularly in the AI sector, but have drawn sharp criticism from privacy advocates who argue they could undermine key protections.
Core Concerns About GDPR Revisions
Critics, including privacy group Noyb, contend that the proposed changes would create loopholes that favor large technology firms like Google, Meta, and Microsoft. One major concern is the relaxation of rules surrounding pseudonymized data, which would allow companies to use such data more freely for commercial purposes, potentially eroding user privacy. Additionally, the reforms could limit individuals' rights to access, correct, or delete their personal data, with provisions that might enable organizations to reject access requests deemed "abusive."
Impact on Sensitive Data Protections
The proposed amendments would also weaken protections for sensitive personal data, such as health status and political opinions. Under the new framework, protections would only apply when such data is "directly revealed," allowing companies to infer sensitive information without triggering legal safeguards. This change raises concerns about potential discrimination based on inferred data, such as pregnancy or sexual orientation.
Enforcement vs. Deregulation Debate
Advocates for stronger enforcement of existing GDPR principles argue that the solution to the dominance of US tech firms in Europe lies not in deregulation but in rigorous application of the current laws. They assert that effective enforcement could dismantle monopolistic practices and create space for European startups to thrive. Critics of the proposed reforms emphasize that the focus should be on enforcing GDPR rather than diluting it to accommodate corporate interests.
Official Statements & Responses
A spokesperson for the European Commission stated that the aim of the proposed amendments is to make the GDPR more operational and to help European companies remain competitive globally. They denied that the reforms are intended to weaken privacy protections, asserting that simplification has been a priority for the Commission.
Criticism & Opposition
Max Schrems, founder of Noyb, criticized the Commission's approach, likening it to tactics used during the Trump administration. He expressed concern that the reforms would undermine the original intent of the GDPR, making it "overall unusable for most cases." Privacy advocates argue that the changes are a response to lobbying pressure from Big Tech and could lead to significant privacy violations.
What's Next
As the European Commission prepares to present the Digital Omnibus, the upcoming discussions and potential legislative actions will be closely monitored by privacy advocates and tech companies alike. The outcome of these reforms could have far-reaching implications for data privacy in Europe and beyond, potentially influencing similar policy decisions in other jurisdictions.
Verbatim Quotes
- “One part of the European Commission (EC) seems to try overrunning everyone else in Brussels, disregarding rules on good lawmaking, with potentially terrible results.” — Max Schrems, Founder of Noyb
- “The aim is to make the GDPR more operational, not to weaken it.” — European Commission Spokesperson
