Regulatory Watch  /  Norway (EEA)  /  Enforcement
Low impactEnforcementFiled

Norwegian DPA receives GDPR complaints against Grindr and ad‑tech firms

The Norwegian Consumer Council, together with noyb, filed three formal GDPR complaints against Grindr and five ad‑tech companies (Twitter’s MoPub, AT&T’s AppNexus, OpenX, AdColony, Smaato) with the Norwegian Data Protection Authority. The complaints allege unlawful tracking, location and sexual‑orientation data sharing for targeted advertising. Similar complaints are planned for the Austrian DPA.

Why it matters: The filings highlight alleged GDPR breaches involving extensive personal data tracking and profiling, prompting enforcement action.

Summary generated from the sources below. Check the primary source before relying on it; this is not legal advice.

Sources
Three GDPR Complaints filed against Grindr, Twitter and the AdTech companies Smaato, OpenX, AdColony and AT&T’s AppNexus
noyb · primary source · Jan 14, 2020
Three GDPR Complaints filed against Grindr, Twitter and the AdTech companies Smaato, OpenX, AdColony and AT&T’s AppNexus
noyb · Jan 14, 2020
Details
JurisdictionNorway (EEA)
RegulatorNorwegian Data Protection Authority
LawGeneral Data Protection Regulation
StatusFiled
PublishedJanuary 14, 2020
Effectivenot stated
OrganisationsGrindr, Twitter (MoPub), AT&T (AppNexus), OpenX, AdColony, Smaato
Topicstracking, profiling, location, targeted advertising, privacy, data minimization, purpose limitation, cross border transfer
Datapersonal, location, device, sensitive