Bonum Certa Men Certa

EPO and Microsoft Collude to Break the Law -- Summing Up: EPO Administrative Council Still Asleep at the Wheel

Previous parts:



EPO's council heads



Summary: AC chair Josef Kratochvíl (CZ) and deputy chair Borghildur Erlingsdóttir (IS) seem to be unperturbed by the sell-out of the EPO's "digital sovereignty" taking place on their watch

For quite some time now it has been an open secret that the data protection framework at the EPO is not fit for purpose.



Back in the spring of 2014 the Bavarian Data Protection Commissioner, Dr Thomas Petri, carried out his own independent investigation into the matter following a complaint and he came to the conclusion that "nobody was really in charge".

Together with his colleague the Federal German Data Protection Commissioner, Andrea Vosshoff, Dr Petri raised serious concerns about the state of data protection at the EPO. However, their urgent pleas for reform fell on deaf ears.

"So it's difficult to see how such a manifestly deficient framework which hadn't changed in the meantime could be considered meet the even more stringent standards imposed by GDPR in 2018."When the EU GDPR came into effect in May 2018, Battistelli attempted to pull the wool over the eyes of the EPO's stakeholders and the general public by issuing a self-serving communiqué (warning: epo.org link) proclaiming the EPO's commitment to "ensuring the highest level of data protection" and announcing that "a recent audit report has confirmed a close alignment with the GDPR legal framework".

The only problem here is that Dr Petri, a serious and well-regarded independent expert on data protection law found that the EPO's data protection framework failed to measure up to pre-GDPR standards in 2014.

So it's difficult to see how such a manifestly deficient framework which hadn't changed in the meantime could be considered meet the even more stringent standards imposed by GDPR in 2018.

As a matter of fact, a report commissioned by the EPO staff union SUEPO from external legal experts in 2016 came to the conclusion that the EPO's data protection framework was not compliant with EU data protection standards and was in urgent need of a radical overhaul.

It's worth citing a few passages from that report for the record:

The European Union does, quite rightly, take data protection seriously. Yet the framework at the EPO gives rise to significant cause for concern, which has also been expressed by the national data protection authorities of the main host state – the Federal Republic of Germany.

The Guidelines for the Protection of Personal Data in the European Patent Office (‘EPO DataProtection Guidelines’ or ‘EPO DPG’), which were unilaterally adopted by the President and which entered into force on 1st April 2014. The current EPO DPG appear to fail to meet the standards of both EU data protection law and the national data protection laws of the Contracting States, in particular, the host countries of the EPO. As such, they do not provide a satisfactory framework for safeguarding the data protection rights of data subjects within the Office.

A key component of the EU data protection framework and which is reflected in the national data protection laws of all EU member states is the existence of an independent oversight body; yet this is conspicuously absent at the EPO. Indeed, the deficiencies in the existing system of data protection established by the EPO's Data Protection Guidelines have come to the attention of the national data protection authorities in the host state of the EPO's headquarters (Germany) and have even been the subject of a discussion in the Legal Affairs Committee of the German Federal Parliament (Bundestag).


In the meantime, very little has changed at the EPO apart from the arrival of a new Data Protection Officer via "the talent pipeline from the EUIPO in Alicante” in April 2020 as previously reported by Techrights.

"Unfortunately for all concerned, the Administrative Council appears to have completely abdicated its responsibilities in this regard."When all is said and done, the task of ensuring that the EPO's data protection framework is fit for purpose is a matter of fundamental legal and political significance which lies within the responsibility of the governing body of the organisation, namely the Administrative Council.

This is not something which can be simply delegated to the EPO management to deal with on its own initiative.

Unfortunately for all concerned, the Administrative Council appears to have completely abdicated its responsibilities in this regard.

The Council gives the distinct impression that it is "asleep at the wheel" as the senior management of the EPO proceeds to sell out the organisation's "digital sovereignty" to a US multinational corporation behind its back.

EPO cruise
Once again, the EPO's Administrative Council seems to be asleep at the wheel



Of course the Council has only got itself to blame for the precarious and potentially disastrous situation which has now developed.

After all they were the ones who permitted their sense of judgement to be corrupted by the former Council Chairman Battistelli and agreed to follow his proposal to disband the independent Audit Committee in 2011.

With the benefit of hindsight it is now apparent that, by acting as an accessory to Battistelli's Machiavellian intrigues and acquiescing in the disbandment of the Audit Committee, the Council followed a misguided course of action which has had far-reaching and detrimental effects on the integrity of EPO governance.

It comes as no real surprise to see that - having deprived itself of any genuinely independent source of advice by means of an ignominious act of self-mutilation at the urging of Battistelli - the Council is now unable to react in an robust manner to defend the EPO's "digital sovereignty" and to ensure that the organisation's data protection framework is fit for purpose and truly GDPR-compliant.

These are matters of fundamental importance and legitimate concern not only to EPO staff but also to all other stakeholders, including the general public.

Unfortunately the current Council under the stewardship of its chair, Josef Kratochvíl (Czech Republic), and deputy chair, Borghildur Erlingsdóttir (Iceland), does not appear to appreciate the seriousness of the issues and stake and seems unlikely to take appropriate remedial action unless and until something dramatic happens to jolt it out of its complacent slumber.

Recent Techrights' Posts

The Solicitors Regulation Authority (SRA) Delusion - Part IV - Machos in Charge of the House (and System), Even If the Faces Are Female (Optics)
basically a Windows/Microsoft (US) shop
Brett Wilson LLP Seems to Have Done for Roberto Foa What It Did a Year Earlier for the Serial Strangler from Microsoft
Repeat abusers (of the legal system) will misuse it as long as regulators do nothing
Where We Stand With the Winter Series
We'll need to protect names and sources
Gemini Links 10/02/2026: "The Last Messiah", Discord for Adults
Links for the day
Mobbing at the European Patent Office (EPO) - Part V - Strongest Strike Under António Campinos
SUEPO Munich is also reminding people of the threat of PIPs
GNU/Linux May Have Grown to 7% in Equatorial Guinea
Has there been some kind of mass migration there or is this just noise in the data?
 
US/Europe divergence: health & safety, criminality & Debian harassment culture: Open Digital Ecosystems submission F33370170
Reprinted with permission from Daniel Pocock
Links 10/02/2026: Splinternets and "Meta Goes to Trial in a New Mexico Child Safety Case"
Links for the day
Russia and China Best Off Without GAFAM
What if they abandoned GAFAM?
Will Finns Put Out the Online Cigarettes?
More people recognise that the child porn site formerly known as "Twitter" and Cheeto/Pooh-tin controlled TikTok are no longer trustworthy
As the US Economy Sags Microsoft Layoffs Carry on (Now in Larger Waves Like 15,000 Per Season or 30,000+ Per Year)
They try to avoid "negative" topics
GNU/Linux at 3.99% in Australia
now that Australians can no longer keep Vista 10
Microsoft Windows Falling
analytics.usa.gov Shows Rapid Erosion of Windows Market Share Since 'End of 10' (Vista 10)
Microsoft Windows Hits All-Time Low in The Netherlands in 2026
Europe needs to rid itself or wean itself off GAFAM
SRA: SLAPPs From Russian War Criminals and American Men Who Strangle Women Are Acceptable
The SRA, by inaction, is complicit in this
From Weber Shandwick (Microsoft PR) to Brett Wilson LLP (Hired Gun of the Serial Strangler of Microsoft)
they basically tried to charge me a lot of money for a PR project of someone who strangled women
The Solicitors Regulation Authority (SRA) is Not a Regulator, It's Part of the Litigation "Industry" in the UK (They Overlap Each Other)
Does nothing except talk about SLAPPs
In Finland, Microsoft Falls Behind Yandex (Russia)
Bing has had many layoffs in recent years
Security More Advanced in Geminispace Than on the Web (Bloat)
For real security, use Geminispace capsules, not Web sites
Slop at Microsoft is a Miserable Failure, Now Microsoft Takes the "Vista Route" (Paying People to Say Good Things About It)
This is brainwash, it's meant to delay the implosion of the bubble
Rumours About February 2026 Microsoft Layoffs: Silent Layoffs or 30,000 Culled Tomorrow
Sooner or later (and soon) Microsoft will need to say something and file some WARN notifications
GNU/Linux at 12% in Guam, Based on statCounter (Compared to 2-3% a Year Ago)
Guam's "uptick" in GNU/Linux usage started weeks after "end of 10"
Fighting Slop With the Public Domain (and Why Slopfarms Perish Faster Than New Ones Appear)
We can combat the nonsense by producing more human-made works until the slop bubble implodes
After Employee Reviews at IBM Staff Expects Another Large Wave of PIPs and "RAs" (Layoffs)
From what we can see in the "public Web"
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, February 09, 2026
IRC logs for Monday, February 09, 2026
Is Europe Abandoning Digital Opium?
GAFAM-controlled social control media
Microslop is Slop, Slop is Considered "Quality"
no wonder Microsoft's stuff breaks down so often
thelayoff.com Deletes On-Topic Discussions (Layoffs) While Leaving in Tact Pro-Corporate Trolling Made by LLMs (Slop)
Who at thelayoff.com deems spam made by LLMs (slop) to be on-topic and unworthy of zapping, whereas actually on-topic and authentic threads get routinely deleted?
Gemini Links 09/02/2026: Great Salt Lake Ecological Observatory and Offpunk 3.0 "A Community is Born" Release
Links for the day
Links 09/02/2026: Mass Plagiarism and Pollution/FakeCoin Company Nvidia Contacted Anna’s Archives, Narges Mohammadi Gets Second Prison Sentence
Links for the day
Links 09/02/2026: Russia Intentionally Killing Civilians, Jimmy Lai Effectively Sentenced for Life for Publishing News
Links for the day
Microsoft Competitions, Addictions, and Popularity Contests Are Not Going to Help Perl, They'll Waste Everybody's Time and Give Microsoft More Control Over Its Competition
Microsoft does not like Perl
A Can of WORMS - Part IV - They Would Even Attack RMS for Criticising Autocrats (Saying This is "Politics")
Conforming to society's perceived expectations isn't how effective activism can ever be done or was ever done in the recent past
Gemini Links 09/02/2026: The Exploration Myth and Making JavaScript Fun
Links for the day
EPO Outrage and Maintaining the Pressure
A vending machine does not fall over after a first push
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, February 08, 2026
IRC logs for Sunday, February 08, 2026
"Low Performer" and "Underperformer" as Harmful Misnomers That Damage a Company's Reputation
Misnomers need to be avoided or called out
Expensive errors: Forbes Gold price, $44 billion Bitcoin given away by Bithumb, South Korea
Reprinted with permission from Daniel Pocock
Links 08/02/2026: Microsoft OSI (Openwashing Lobby) in Europe, Raised Against Social Control Media Provocateurs in EU
Links for the day
The Open Source Initiative (OSI) Lobbies for Microsoft in the EU, Promoting Proprietary Lock-in
OSI pushing and selling Microsoft and GitHub. OSI is Microsoft front group.
Getting the European Court of Justice to Annul the Illegal and Unconstitutional Unified Patent Kangaroo Court (UPC)
We're still working on it
Finland's Dependence on GAFAM (US) Needs to be Lessened, EU Must Follow This Path
It's unwise to make one's entire national infrastructure (computer systems) dependent on a regime which compares its black citizens to monkeys and assassinates nonviolent dissenters
Links 08/02/2026: Microsoft GitHub as Burden on Developers and "The Chomsky Epstein Files"
Links for the day
Gemini Links 08/02/2026: "Doing Not Much Tweaking" and "Reclaiming Digital Agency"
Links for the day
Forbes: BitCoin, Cryptocurrency pages removed from investment database, links stop working
Reprinted with permission from Daniel Pocock
Bitcoin warning followed immediately by network outage
Reprinted with permission from Daniel Pocock
Money Funneled to Protection of Software Freedom, But Nothing Really Lost
Crossposted from personal site
They Tell Us Slop Replaces Workers, But the Reality Is, US Debt Has Surged 2,300 Billion Dollars in Six Months (the Economy is Collapsing)
Oligarchy already entertains the option of running away to (or colonising) some other planet without pitchforks and "unwashed masses"
Mozilla Firefox Sinks to Just 1.5% in the United States
According to analytics.usa.gov
We're Still Fast
The site is even faster than the BBC's despite being on shoestring budget with only a small technical team
Gemini Protocol is Not a Waste of Time of Effort
We see more and more GNU/Linux- or BSD-focused bloggers turning to Gemini
Our Gemini Protocol Support Turns 5 Today
today is a rare anniversary for us
In Today's World, One Must be Tough and Principled to Get Ahead Morally
But not financially (sellouts)
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, February 07, 2026
IRC logs for Saturday, February 07, 2026
The Right Wing in the United States Does Not Support Free Speech, It Supports Its Own Speech
Free speech is often opposed by those who also oppose Free software
IRC is a Lot Better Than Social Control Media (They're Not the Same at All)
A good social analogy for IRC is, there are many buildings with a party in each building
Microsoft 'Open' 'AI' is 'Dead Meat'
Or 0xDEADBEEF as some geeks might call it
When Identifying "Low Performers" and "PIPs" Aren't About Improving Performance But Reinforcing a Clique in Your Company/Organisation
It's very troubling to see once-respectable brands like IBM and institutions like the EPO resorting to this
Slop and Flop (IBM), Slopfarms and Hybrids (Linuxiac)
Did Bobby Borisov assume he would never get caught?
Crowdfunding vs Bitcoins: donations are better investment than digital tulip mania
Reprinted with permission from Daniel Pocock