Home Data Privacy Roundup Being Proactive Is Good For Your Health – And For Privacy Compliance

Being Proactive Is Good For Your Health – And For Privacy Compliance

SHARE:
Comic: Cookie Doctor

What do data privacy and protection have in common with prostate health?

More than you’d think.

Developing and managing a robust privacy program isn’t easy. But it’s better than getting fined by regulators, paying restitution, suddenly having to change one’s business model or delete algorithms developed using improperly collected data.

Prevention is the best cure.

“It’s no longer the time to hold your breath and hope everything will turn out all right,” said Jamie Barnard, CEO of privacy compliance software startup Compliant, during a virtual presentation last week about COPPA, child safety and the recent Adalytics reports.

“Forgive the analogy, but it’s like refusing to get your prostate checked,” Barnard said. “The experience probably brings tears to your eyes … but the problem won’t go away, and the longer you leave it, the worse it’s gonna get.”

The cure (not to be confused with The Cure)

And you don’t always get a do-over.

Yes, most privacy laws coming into effect in the US include cure provisions that give businesses a period of time – often 30 days but sometimes up to 90 days, depending on the statute – to deal with any alleged violations before facing penalties.

But that’s not the case everywhere.

There is no cure period under GDPR, for example. And the California Privacy Rights Act eliminated the 30-day cure window previously available under the California Privacy Protection Act, leaving it up to the California Privacy Protection Agency and the state’s attorney general to decide if businesses should be given an opportunity to fix the situation before getting hit with a fine or some other form of punishment.

Subscribe

AdExchanger Daily

Get our editors’ roundup delivered to your inbox every weekday.

Meanwhile, federal regulators are getting creative with their remedies.

If you’ve gots the poison, I’ve gots the remedy

Last year, the Federal Trade Commission ordered WW International (formerly Weight Watchers) to destroy any algorithms and AI models it had created that incorporated data gathered by Kurbo, its weight-loss app geared toward kids.

Comic: "It's privacy, safe, folks!"The FTC found that WW had collected data from children via Kurbo without parental consent, which is a violation of the Children’s Online Privacy Protection Act.

As part of its settlement, WW had to pay $1.5 million, but it was the algorithmic destruction, also known as disgorgement, that no doubt stung the most. (“Disgorgement” is the legal term for requiring a party to give up any profits they made as a result of wrongdoing or illegal activity.)

That’s what happens to tainted fruit, though. You’ve got to throw it away.

Algorithms trained on ill-gotten data simply “shouldn’t exist,” said Heidi Saas, a data privacy and technology attorney.

Not that perfect compliance is even possible.

Any business that thinks its data store is completely clean is “probably slightly deluded,” said Barnard, who spent more than 15 years at Unilever – including as general counsel for global marketing, media and ecommerce – before joining Compliant last year.

“The challenges of compliance are so difficult that there’s almost certainly a bunch of data in there that shouldn’t be,” Barnard said. “As a former lawyer, what I’m about to say might come as a surprise, but, frankly, unless you’re about to sink, I wouldn’t spend too much time bailing water out of the boat; I’d spend all my time trying to fix the leak.”

In other words, you can’t guarantee that you won’t develop prostate problems, but there are things you can do to bolster your general health. Perfect is the enemy of good. Oh, and don’t skip your physicals. That’s just good advice in general.

(Unrelated: Who wants to start a metal band with me called “Algorithmic Destruction”?)

As always, thanks for reading! Drop me a line at allison@adexchanger.com to let me know what you think. Thanks, as well, for listening to our podcasts. We have two: The Big Story and AdExchanger Talks. Check them out if you’re in the mood. 🙂👂 And if you’re looking for more podcast recommendations, might I suggest this one.

Must Read

FTC Commissioner Mark Meador speaking at the NAD's annual conference in Washington, DC on Sept. 15, 2025. (Photo: Brian O'Doherty)

FTC Commissioner Mark Meador: ‘No Human Society Can Long Survive Without Consumer Trust’

Keeping American kids safe in what FTC Commissioner Mark Meador calls “an increasingly complex and fast-paced technological environment” is a top priority for the agency.

Comic: "Deal ID, please."

Amazon Expands Its Programmatic Integration With SiriusXM

On Tuesday, Amazon DSP announced an expanded integration with satellite radio company SiriusXM.

Rembrand merges with Spaceback

Omar Tawakol Is Merging His AI Startup Rembrand With Spaceback

Rembrand announced that it’s merging with creative automation startup Spaceback to build a unified AI-powered platform for “content-based” CTV, digital video and display.

Privacy! Commerce! Connected TV! Read all about it. Subscribe to AdExchanger Newsletters
A comic depicting people in suits setting money on fire as a reference to incrementality: as in, don't set your money on fire!

Retail Media Is Starting To Come To Grips With The Fact That We All Know Nothing

Retail media is entering what might be called its Socratic phase. The closer we to get to understanding an ad campaign’s real impact and business results, the clearer it is that we have no idea how this thing works.

Meta Reels trending ads

Meta Has New Tools For Brand And Performance Goals, With A Focus On AI (Of Course)

Meta is rolling out Reels trending ads, value rules beyond just conversions, upgrades to Threads and pixel-free landing page optimization.

Comic: Shopper Marketing Data

Google Search Ads 360 Adds Criteo As First On-Site Retail Media Supply Partner

Criteo announced a partnership with Google Search Ads 360 (SA360), Google’s enterprise search advertising platform, making Criteo the first third-party vendor to integrate with Google for on-site retail media supply.