Posts

Showing posts with the label #trendingtopic

How universal consent works, start to finish.

Image
Universal consent means one central record of every yes and no a person gives you, read by every system you run and updated the moment it changes. Your banner only sees one of those channels. Most companies collect consent well and carry it badly. Here's a plain walk through what happens when it works, plus the one arrival almost nobody has planned for. Step 1: Someone answers They land on your site. Or open your app. Or tick a box on a paper form at your counter. Or reply STOP to a text. All four are consent events. All four count in law, and only the first one usually gets built properly. Step 2: The answer goes to one place Rather than saving into whichever tool caught it, the answer gets written to a single central record. Stored alongside it: who they are, what they agreed to, when, which channel, and which law applied to them at that moment. That last field does a lot of quiet work. It's how you answer "was this lawful?" two years later. Step 3: Everything else ...

There are three AI Act fine tiers. Most people only know one of them.

Everyone knows the headline number. Almost nobody plans for the other two. That gap tells you exactly how most organisations are preparing, and why so many will still be caught. The three tiers Prohibited practices cost up to 35 million euros or 7% of worldwide annual turnover, whichever is higher. Breaching operator or general-purpose model duties runs to 15 million euros or 3%. Giving an authority incorrect, incomplete or misleading information costs up to 7.5 million euros or 1%. Small and medium companies are capped at the lower of the two figures rather than the higher. Read the third tier twice. It does not punish reckless AI. It punishes an inaccurate answer. You can act in good faith, answer a regulator from a spreadsheet nobody updated, and land inside it. Which is the cheapest tier to avoid, and the only one that is purely an admin problem. Why that tier is a governance failure, not a legal one AI compliance means proving your AI meets rules somebody els...