Skip to main content
related_content_tab

Privacy regulations in the European Union and UK have undergone significant changes in the past several years and affect companies worldwide. The General Data Protection Regulation (GDPR), which came into force in 2018, impacts any company that operates an EU-facing website to market goods or services to EU-based individuals, and/or that monitors EU-based individuals, e.g., with cookies or other similar technologies. The impacts of the GDPR on companies with an online presence in the EU are far-reaching and have required numerous changes to the way businesses handle personal information. After Brexit, the UK adopted its own GDPR (UK GDPR). The GDPR and UK GDPR will apply to anyone dealing with people based in the EU member states and the UK.

The GDPR and UK GDPR place significant obligations on businesses, including:

  • A strict definition of consent, making it difficult to obtain.
  • Significant requirements around profiling, sensitive data handing, data retention and use, which restrict what companies may do with the data they collect and how they store and handle the data they collect.
  • Significant obligations on and liabilities for data processors.
  • Breach notification requirements.
  • Sanctions for failure to comply, which could result in fines of up to 4% of annual turnover or 20 million euros/17.5 million pounds (whichever is higher).

GDPR and UK GDPR compliance encompasses more than having correct policies; for many companies, it may affect business operations and require new technology or changes to configurations of existing technology. Becoming and staying GDPR- and UK GDPR-compliant should be a multistakeholder process, involving both internal company resources across the organization and external advisors.

We can help you with GDPR compliance. We have a team of experienced practitioners who understand what it takes to comply with the GDPR in a way that complements your business priorities. If you would like further information on what you should be doing to ensure you are compliant, please contact us – we are here to help.

Cooley GO

Other resources

Thought leadership

Client alerts

Webcast

Press comments

Last reviewed: September 3, 2025
Popular articles