Within hours of the GDPR becoming applicable on 25 May 2018, the non‑profit noyb filed three complaints against Facebook, Instagram and WhatsApp. The Irish DPC has kept the investigation confidential but may issue a fine of up to €2.5 billion if it follows its internal report. The open letter alleges a secret “consent bypass” where Facebook switched from consent to a data‑use contract.
Why it matters: The case highlights enforcement challenges of the GDPR and the risk of a multibillion‑euro fine for a major tech platform.
Summary generated from the sources below. Check the primary source before relying on it; this is not legal advice.