As DMA takes place, EU Commission ironically breaches privacy rules when using Microsoft's apps

Apple, Alphabet, Microsoft, & others have been making changes to their products.

Reading time icon 2 min. read


Readers help support MSpoweruser. We may get a commission if you buy through our links. Tooltip Icon

Read our disclosure page to find out how can you help MSPoweruser sustain the editorial team Read more

Key notes

  • European Digital Market Act (DMA) is active since March 2024
  • Ironically, EU Commission accused of privacy breaches using Microsoft 365 software.
  • European Data Protection Supervisor (EDPS) orders crackdown on data transfers to Microsoft from non-European countries

The European Digital Market Act (DMA) has been in place since early March 2024. Gatekeepers, like Microsoft, Apple, and Alphabet (Google’s owner), have been making changes to their products to comply with the new regulation.

Ironically, a new report from a watchdog organization says that the EU Commission has been “breaching privacy rules” of its use of Microsoft’s software. The union’s executive branch is responsible for proposing legislation, among other things.

Per Reuters on Monday, the European Data Protection Supervisor (EDPS) found that the European Commission was not careful enough with how it handled Microsoft 365, the Redmond company’s productivity family apps consisting of Word, Excel, PowerPoint, and more, breaching privacy rules.

EDPS then ordered a crackdown on data transfers to Microsoft for users in non-European countries without strong privacy protections. This stems from privacy concerns raised in 2013 following revelations of U.S. government surveillance practices.

“In its contract with Microsoft, the Commission did not sufficiently specify what types of personal data are to be collected and for which explicit and specified purposes when using Microsoft 365,” the EDPS said.

As a response, Microsoft later stated its intent to review the decision and collaborate with the EU to address the concerns, noting that the issues raised pertain primarily to transparency requirements under EU law applicable to EU institutions.

Leave a Reply

Your email address will not be published. Required fields are marked *