Get a good background to data protection law and view practical guidance focused on data protection matters for commercial transactions. See also our UK GDPR compliant pro-party clauses for use in commercial agreements.
Protect trade secrets and know-how using the law of confidentiality. Get information and a set of pro-party confidentiality agreements here.
View a range of trackers to enable horizon scanning and monitoring of key developments. The trackers are maintained - making them useful for keeping up-to-date and for business development.
It’s our online practical guidance product for contentious and non-contentious lawyers dealing with Data Protection, Confidential Information, Privacy, Cybersecurity and Freedom of Information issues.
Welcome to this week’s edition of the Information Law weekly highlights: a hand-picked summary of news analysis, updates and new content related to...
The European Commission has launched a call for evidence on the Digital Omnibus, as part of its Digital Package on Simplification, scheduled for...
MLex: UK companies are still awaiting the Cyber Security and Resilience Bill, as lawmakers this week renewed pressure on the government to introduce...
The Information Commissioner’s Office (ICO) has clarified common misconceptions about how the Privacy and Electronic Communications Regulations (PECR)...
The European Data Protection Board (EDPB) has opened a public consultation on its draft Guidelines 3/2025, which address how the EU Digital Services...
The UK NIS Regulations—timelineThis timeline sets out key dates and information relating to the UK’s Network and Information Systems Regulations 2018...
Jurisdiction agreements—approach of the courts of England and WalesThis Practice Note looks at the approach of the English courts when determining the...
Retained EU law and assimilated lawThis Practice Note provides an overview of retained EU law as it applied from 2021–23, including the key...
Starting a UK GDPR compensation claim—a practical guideThis Practice Note provides guidance on pursuing a ‘UK GDPR claim’. This is with reference to...
Starting a claim for misuse of private information—a practical guideThis Practice Note considers how to start a claim for misuse of private...
Defence (database right infringement)Case No. [insert number]IN THE HIGH COURT OF JUSTICEBUSINESS AND PROPERTY COURTS OF ENGLAND & WALESINTELLECTUAL...
Records retention schedule1Introduction1.1This Record retention schedule accompanies and is incorporated into [insert organisation’s name]’s Records...
Cookie policyFORTHCOMING CHANGE: On 19 June 2025, the Data (Use and Access) Bill received Royal Assent, becoming the Data (Use and Access) Act 2025...
Confidentiality and personal data sharing agreement—one-way—pro-recipientThis Agreement is made on [date]Parties1[Insert name of party] [of [insert...
Confidentiality agreement—one-way—pro-discloserThis Agreement is made on [date]Parties1[Insert name of party][ of [insert details] OR a company...
The UK General Data Protection Regulation (UK GDPR)—NavigatorThis Practice Note serves as a reference guide to the Retained Regulation (EU) 2016/679...
Privacy law—misuse of private informationThe tort of misuse of private information is focused on ‘the protection of human autonomy and dignity—the...
Confidentiality agreement—mutualThis Agreement is made on [date]Parties1[insert name of party] [of [insert details ] OR a company incorporated in...
The Information Commissioner’s Office (ICO)The Information Commissioner’s Office (ICO) is the UK’s independent regulator designed to uphold...
The UK General Data Protection Regulation (UK GDPR)This Practice Note provides a summary of the UK GDPR regime. For a higher-level introduction to UK...
Letter of claim—breach of confidence[Insert name and address of recipient]Dear [insert organisation name],[Name of client] and confidential...
Trade secrets and confidential information—protection and enforcementThis Practice Note sets out the protection available for trade secrets and...
Introduction to the EU GDPR and UK GDPRThis Practice Note provides a high-level introduction to the EU’s General Data Protection Regulation,...
Data protection, privacy and confidential information case law trackerThis Practice Note tracks noteworthy High Court, Court of Appeal and Supreme...
Commercial use of photographs—data protection and privacy issuesThis Practice Note addresses issues affecting professional photographers taking...
Letter of claim—breach of data protection law[Insert name and address of recipient]Dear [insert organisation name],[Name of client] and breach of data...
What does IP completion day mean for Information Law? [Archived]ARCHIVED: This Practice Note has been archived and is not maintained.11 pm (GMT) on 31...
Confidential information, privacy and injunctionsThis Practice Note deals with the general principles of obtaining an injunction relating to...
The Data Protection Act 2018This Practice Note introduces the UK’s Data Protection Act 2018 (DPA 2018).For higher-level introductions to data...
any reasonably identifiable circumstance or event having a potentially adverse effect on the security of network and information systems
a declaration made before a Commissioner for Oaths in a prescribed form;
“Telecommunications service” means any service that consists in the provision of access to, and of facilities for making use of, any telecommunication system (whether or not one provided by the person providing the service).