An Analysis of Ireland's Homecare Companies' Cookie Practices in terms of GDPR Compliance.

Gerard Reynolds, Seamus Dowling

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

2 Citations (Scopus)

Abstract

The General Data Protection Regulation (GDPR) 2016, the Data Protection Act 2018 and the e-Privacy Directive 2002 are applicable legal instruments that impose responsibilities on homecare companies as 'data controllers'. One of these responsibilities is that they provide their clients with information pertaining to their clients' rights and the data controllers' responsibilities as set out by the GDPR. Many homecare companies publish their Privacy Policies on the company website to showcase their compliance and make themselves more attractive to potential clients. Many websites use Cookie (or consent) Management Platforms (CMP's) to manage their cookies and fulfil their legislative obligations. Cookies gather information and must comply with the terms of data protection and e-Privacy legislation. This research evaluates homecare companies' Cookie Practices to ascertain GDPR compliance and found them to be lacking the substance and detail necessary to be considered compliant. This was achieved by identifying the websites of homecare companies operating in Ireland, accessing their website using a cookie cleared browser and then examining the researcher's computer immediately afterwards to see what (if any) cookies had been uploaded, in addition to assessing the homecare companies CMP (where present) for compliance. This research found a high level of non-compliance and suggests that Ireland's Data Protection Commission (DPC) could and should become more involved in creating solutions by evolving their role to that of a Data Protection Service Provider. By doing so they will improve compliance with data protection legislation and enhance the protections afforded to an individual's right to privacy.

Original languageEnglish
Title of host publication2022 Cyber Research Conference - Ireland, Cyber-RCI 2022
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9781665474221
DOIs
Publication statusPublished - 2022
Event2022 Cyber Research Conference - Ireland, Cyber-RCI 2022 - Galway, Ireland
Duration: 25 Apr 2022 → …

Publication series

Name2022 Cyber Research Conference - Ireland, Cyber-RCI 2022

Conference

Conference2022 Cyber Research Conference - Ireland, Cyber-RCI 2022
Country/TerritoryIreland
CityGalway
Period25/04/22 → …

Keywords

  • GDPR
  • cookies
  • data protection
  • privacy

Fingerprint

Dive into the research topics of 'An Analysis of Ireland's Homecare Companies' Cookie Practices in terms of GDPR Compliance.'. Together they form a unique fingerprint.

Cite this