Orange Fined €50M for In-Email Ads and Cookie Consent Violations

In a significant ruling, the French Data Protection Authority (CNIL) has imposed a hefty fine of 50 million euros on the French telecom giant Orange for displaying advertisements in users’ email inboxes without obtaining their explicit consent. Specifically, Orange was embedding these ads within its Mail Orange service, leading them to appear as genuine emails among personal messages. This deceptive practice contravenes the French Post and Electronic Communications Code, which unambiguously requires user consent for such advertisements. The collective impact of this non-compliant behavior was profound, affecting over 7.8 million individuals who use Orange’s services and highlighting the company’s significant market position in France.

Moreover, Orange was found to be continuing to read cookies on users’ devices, despite users withdrawing their consent on the orange.fr website. This breach compounds the issue, reflecting a disregard for user preferences and established data protection laws. According to CNIL, Orange will be required to cease reading user cookies without consent within three months from the ruling. Failure to comply with this directive would result in Orange facing additional penalties amounting to 100,000 euros for each day it remains in breach. This ruling underscores the robust nature of the GDPR and the significant consequences companies face for failing to comply with its stringent requirements.

The CNIL’s decision aligns with previous European court rulings that categorize unsolicited advertisements in email inboxes as spam. This case reinforces the necessity for service providers to obtain explicit user consent before embedding advertisements within email services. The fine imposed on Orange serves as a stark reminder to all companies operating within the EU about the critical importance of maintaining user consent and complying with privacy regulations. These rulings reiterate the value of data privacy rights and illustrate the severe repercussions for failing to uphold these principles. With GDPR guidelines continuing to evolve, staying compliant is not only a legal obligation but also an ethical duty to protect user privacy.

Explore more

Are Retailers Ready for the AI Payments They’re Building?

The relentless pursuit of a fully autonomous retail experience has spurred massive investment in advanced payment technologies, yet this innovation is dangerously outpacing the foundational readiness of the very businesses driving it. This analysis explores the growing disconnect between retailers’ aggressive adoption of sophisticated systems, like agentic AI, and their lagging operational, legal, and regulatory preparedness. It addresses the central

Software Can Scale Your Support Team Without New Hires

The sudden and often unpredictable surge in customer inquiries following a product launch or marketing campaign presents a critical challenge for businesses aiming to maintain high standards of service. This operational strain, a primary driver of slow response times and mounting ticket backlogs, can significantly erode customer satisfaction and damage brand loyalty over the long term. For many organizations, the

What’s Fueling Microsoft’s US Data Center Expansion?

Today, we sit down with Dominic Jainy, a distinguished IT professional whose expertise spans the cutting edge of artificial intelligence, machine learning, and blockchain. With Microsoft undertaking one of its most ambitious cloud infrastructure expansions in the United States, we delve into the strategy behind the new data center regions, the drivers for this growth, and what it signals for

What Derailed Oppidan’s Minnesota Data Center Plan?

The development of new data centers often represents a significant economic opportunity for local communities, but the path from a preliminary proposal to a fully operational facility is frequently fraught with complex logistical and regulatory challenges. In a move that highlights these potential obstacles, US real estate developer Oppidan Investment Company has formally retracted its early-stage plans to establish a

Cloud Container Security – Review

The fundamental shift in how modern applications are developed, deployed, and managed can be traced directly to the widespread adoption of cloud container technology, an innovation that promises unprecedented agility and efficiency. Cloud Container technology represents a significant advancement in software development and IT operations. This review will explore the evolution of containers, their key security features, common vulnerabilities, and