Bonum Certa Men Certa

EPO Management Consciously Breaking European Union Laws: Staff and Stakeholders Subjected to Illegal Tactics and Practices, Now Exam Takers As Well

Orwell's nightmare, now with diplomatic immunity and no oversight whatsoever

Mirrored objective



Summary: The EPO routinely breaks privacy laws, knowing that there's not even an attempt to enforce the law against the EPO's dictators; we've lost count of the instances/number of privacy scandals at the EPO, but we keep adding more to our list

Staff and stakeholders have their privacy rights violated, as we noted last month and again this morning. Under normal circumstances, Benoît Battistelli, António Campinos and their ilk would risk arrest for what they do at the EPO. But they have diplomatic immunity and half a decade ago we saw Battistelli getting away with very serious crimes, e.g. visitors subjected to illegal surveillance on EPO premises (it was all over the media at the time, back when the media actually bothered covering EPO scandals).



Wall of MirrorsThe Commission's whitewash of corruption at the EPO means that EU law won't be enforced and rules won't be honoured; just like that... more abuse, more immunity, more impunity...

Rose Hughes (AstraZeneca and EPO apologist) has just been advertising a sham exam (EQE) with extra surveillance now added to it. The corruption associated with EQE was covered here in a series earlier this year. Nobody was held accountable. Nobody.

Based on this post, the EPO adopts more spyware; basically malware. It's as if COVID-19 makes 'magic' and renders the illegal "excusable" ever so magically. To quote: "The EPO has released the first detailed information for candidates on the arrangements for the online pre-EQE and EQE next year. Full details can be read here. The examinations are scheduled to take place the week of 1 March 2021. The online exams will be taken using the dramatically named "LockDown browser", which candidates are being advised to log in to 20 minutes before the exam."

"A lot of things like the "LockDown browser" are being imposed on students despite being in violation of human rights."So the data is going to Microsoft's next-door neighbours at Respondus, who are flirting with GDPR violations and looking for cleverly-worded excuses. A lot of things like the "LockDown browser" are being imposed on students despite being in violation of human rights. Lack of actual enforcement is a very serious problem. Laws without enforcement are toothless tigers.

We'd like to bring up an old document (2019) [PDF] in which staff representatives at the EPO named several GDPR violations. Here's the full document for the PDF-hostile/averse folks.

EPO GDPR p1

EPO GDPR p2

EPO GDPR p3

EPO GDPR p4

EPO GDPR p5

EPO GDPR p6

Notice the part about the UPC: "In the near future the EPO might be entrusted by the EU to process patent application in the framework of the Unitary Patent. It is unlikely that member states and applicants would accept a situation in which the EPO would process personal data of EU citizens in the name of the European Union without respecting EU legislation for data protection."

Here's the corresponding and more concise message to EPO staff:

Data protection @ EPO, quo vadis?



Data protection guidelines at the EPO should be aligned to European regulations

[...]

New EU Data Protection Regulations

New regulations for data protection have been introduced by the EU in 2018, the General Data Protection Regulation[1] (GDPR). It safeguards EU citizen’s fundamental right to protection of their data and it is directly binding for all EU member states. However, it is not binding for the EPO.

EPO has its own data protection policies

The EPO follows its own data protection policies: the Data Protection Guidelines[2] (DPG). Staff representatives pointed numerous times to the gap between the DPG and the European regulations. Commenting on the GDPR, former VP5 Raimund Lutz stated that the EPO is very close to EU legislation, because the EPO always has applied the “highest level of data protection [...] including the nomination of an independent Data Protection Officer (DPO)”. Furthermore, a recent audit report (2017) has been cited which “has confirmed a close alignment with the GDPR legal framework.”[3]

Data protection and the Unitary Patent

In the near future the EPO might be entrusted by the EU to process patent application in the framework of the Unitary Patent. It is unlikely that member states and applicants would accept a situation in which the EPO would process personal data of EU citizens in the name of the European Union without respecting EU legislation for data protection.

EPO data protection guidelines do not meet EU standards

An independent and external legal analysis[4] in 2016 concluded that the DPG did not meet the standards of data protection laws in the EU at that time. The analysis further stated that there is a lack of independent oversight, of an effective system of checks and balances to prevent abuses, and of effective means of redress in circumstances where the rights of individuals are infringed.

Staff representation proposes to align EPO policies to EU policies

Staff representation finds that the introduction of the new European guidelines is an opportunity to re-open the discussion on data protection at the EPO: The data protection policies at the EPO can be improved in order to better protect the data of staff and applicants/users alike. The EPO used to have a long tradition to strive to comply with the highest standards in data protection[5]. The last reform in 2014 can only be seen as deterioration in this matter[6]. An alignment of its data protection guidelines to EU regulations would be a step towards a modern data protection framework and would contribute to establish the EPO as the leading patent office.

Staff representation suggests to:

The EPO policies on data protection should be aligned to the EU regulations, which present at the moment the most comprehensive and modern legislation in data protection matters.

The role of the Data Protection Officer, who is responsible for the implementation of the EPO data protection, should be enforced and its independence should be assured.

An external and independent oversight body should be appointed with the task to monitoring the application of data protection policies at the EPO.

Separate data protection policies should be defined for investigative procedures (e.g., misconduct or fraud). Its implementation should be the responsibility of a distinct Data Protection Officer nominated, e.g., by the Administrative Council.

Rules to safeguard data processing should be mended. For example, transfer of personal data to third countries and the change of purpose, e.g., using personal data for purposes for which the user has not consented to, should be tightly regulated.


[...]

[1] GDPR, link

[2] Guidelines for the protection of personal data in the European Patent Office, link

[3] VP5 announcement on Intranet, 25.05.2018, link

[4] See section 9 “Data protection framework”, Breaches of basic and fundamental rights at the EPO, Bretton Woods Law, Legal Opinion, 2016, link

[5] Data protection – Current situation in the EPO and in Europe, Gazette 15/95, 03.07.1995, page 8, link

[6] GAC/AV 4/2014, Opinion of the CSC about Data Protection Guidelines, link


It is hardly shocking that "EPO data protection guidelines do not meet EU standards" and to think they're now subjecting people who merely take an exam to the same low (and non-complying) standards is the cherry on the cake. We await -- whilst expectations are admittedly low -- EU enforcement action/s. Maybe the German ministry of injustice can once again come up with a bunch of nonsense (lies) about why this is perfectly acceptable.

Recent Techrights' Posts

IBM Culling Workers or Pushing Them Out (So That It's Not Framed as Layoffs), Red Hat Mentioned Repeatedly Only Hours Ago
We all know what "reorg" means in the C-suite
Free Software Foundation Subpoenaed by Serial GPL Infringers
These attacks on software freedom are subsidised by serial GPL infringers
Publicly Posting in Social Control Media About Oneself Makes It Public Information
sheer hypocrisy on privacy is evident in the Debian mailing lists
 
Embrace, Extend, Replace the Original (Or Just Hijack the Word 'Sudo')
First comment? A Microsoft employee
Gemini Links 02/05/2024: Firewall Rules Etiquette and Self Host All The Things
Links for the day
Red Hat/IBM Crybullies, GNOME Foundation Bankruptcy, and Microsoft Moles (Operatives) Inside Debian
reminder of the dangers of Microsoft moles inside Debian
PsyOps 007: Paul Tagliamonte wanted Debian Press Team to have license to kill
Reprinted with permission from disguised.work
IBM Raleigh Layoffs (Home of Red Hat)
The former CEO left the company exactly a month ago
Paul R. Tagliamonte, the Pentagon and backstabbing Jacob Appelbaum, part B
Reprinted with permission from disguised.work
Links 01/05/2024: Surveillance and Hadopi, Russia Clones Wikipedia
Links for the day
Links 01/05/2024: FCC Takes on Illegal Data Sharing, Google Layoffs Expand
Links for the day
Links 01/05/2024: Calendaring, Spring Idleness, and Ads
Links for the day
Paul Tagliamonte & Debian: White House, Pentagon, USDS and anti-RMS mob ringleader
Reprinted with permission from disguised.work
Jacob Appelbaum character assassination was pushed from the White House
Reprinted with permission from disguised.work
Why We Revisit the Jacob Appelbaum Story (Demonised and Punished Behind the Scenes by Pentagon Contractor Inside Debian)
If people who got raped are reporting to Twitter instead of reporting to cops, then there's something deeply flawed
Red Hat's Official Web Site is Promoting Microsoft
we're seeing similar things at Canonical's Ubuntu.com
Enrico Zini & Debian: falsified harassment claims
Reprinted with permission from disguised.work
European Parliament Elections 2024: Daniel Pocock Running as an Independent Candidate
I became aware that Daniel Pocock had decided to enter politics
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, April 30, 2024
IRC logs for Tuesday, April 30, 2024
[Meme] Sometimes Torvalds and RMS Agree on Things
hype around chatbots
[Video] Linus Torvalds on 'Hilarious' AI Hype: "I Hate the Hype" and "I Don't Want to be Part of the Hype", "You Need to Be a Bit Cynical About This Whole Hype Cycle"
Linus Torvalds on LLMs
Colin Watson, Steve McIntyre & Debian, Ubuntu cover-up mission after Frans Pop suicide
Reprinted with permission from disguised.work
Links 30/04/2024: Wireless Carriers Selling Customer Location Data, Facebook Posts Causing Trouble
Links for the day
Frans Pop suicide and Ubuntu grievances
Reprinted with permission from disguised.work
Links 30/04/2024: More Google Layoffs (Wide-Ranging)
Links for the day
Fresh Rumours of Impending Mass Layoffs at IBM Red Hat
"IBM filed a W.A.R.N with the state of North Carolina. That only means one thing."
Workers' Right to Disconnect Won't Matter If Such a Right Isn't Properly Enforced
I was always "on-call" and my main role or function was being "on-call" in case of incidents
Mark Shuttleworth's (MS's) Canonical is Promoting Microsoft This Week (Surveillance Slanted as 'Confidential')
Who runs Canonical these days? Why does Canonical help sell Windows?
A Discussion About Suicides in Science and Technology (Including Debian and the European Patent Office)
In Debian, there is a long history of deaths, suicides, and mysterious disappearances
Federal News Network is Corrupt, It Runs Propaganda Pieces for Microsoft
Federal News Network used to be OK some years ago
What Mark Shuttleworth and Canonical Can to Remedy the Damage Done to Frans Pop's Family
Mr. Shuttleworth and Canonical as a company can at the very least apologise for putting undue pressure
Amnesty International & Debian Day suicides comparison
Reprinted with permission from disguised.work
[Meme] A Way to Get No Real Work Done
Walter White looking at phone: Your changes could not be saved to device
Modern Measures of 'Productivity' Boil Down to Time Wasting and Misguided Measurements/Yardsticks
People are forgetting the value of nature and other human beings
Countries That Beat the United States at RSF's World Press Freedom Index (After US Plunged Some More)
The United States (US) was 17 when these rankings started in 2002
Record Productivity and Preserving People's Past on the Net
We're very productive these days, partly owing to online news slowing down (less time spent on curating Daily Links)
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, April 29, 2024
IRC logs for Monday, April 29, 2024
Links 30/04/2024: Malaysian and Russian Governments Crack Down on Journalists
Links for the day
Frans Pop Debian Day suicide, Ubuntu, Google and the DEP-5 machine-readable copyright file
Reprinted with permission from disguised.work
Axel Beckert (ETH Zurich), the mentality of sexual violence on campus
Reprinted with permission from Daniel Pocock
[Meme] Russian Reversal
Mark Shuttleworth: In Soviet Russia's spacecraft... Man exploits peasants
Frans Pop & Debian suicide denial
Reprinted with permission from disguised.work
Hard Evidence Reinforces Suspicion That Mark Shuttleworth May Have Worked Volunteers to Death
Today we start re-publishing articles that contain unaltered E-mails