Bonum Certa Men Certa

EPOLeaks on Misleading the Bundestag -- Part 7: Ms Voßhoff Alerts the Bundestag…

Series index:

  1. The EPO Bundestagate -- Part 1: How the Bundestag Was (and Continues to be) Misled About EPO Affairs
  2. The EPO Bundestagate -- Part 2: Lack of Parliamentary Oversight, Many Questions and Few Answers…
  3. The EPO Bundestagate -- Part 3: A “Minor Interpellation” in the German Bundestag
  4. The EPO Bundestagate -- Part 4: Parroting the GDPR-Compliance Myth
  5. The EPO Bundestagate -- Part 5: The Federal Eagle's Disconcerting Metamorphosis
  6. EPOLeaks on Misleading the Bundestag -- Part 6: Dr Petri Starts the Ball Rolling…
  7. You are here ☞ Ms Voßhoff Alerts the Bundestag…


Federal Data Protection Commissioner



Summary: In July 2015, the Federal Data Protection Commissioner notified the Bundestag of her concerns

As is well known, the EPO made headlines in Germany in June 2015 following revelations about covert surveillance conducted by the Benoît Battistelli's notorious "Investigative Unit" which was reported to have deployed hidden cameras and key loggers in a manner that would have been illegal under EU and national data protection law in Germany.



Media reports about the EPO spy-scandal persuaded Ms Voßhoff to dust off the EPO file and renew her efforts to have this rogue organisation called to account by the Federal German authorities.

"Media reports about the EPO spy-scandal persuaded Ms Voßhoff to dust off the EPO file and renew her efforts to have this rogue organisation called to account by the Federal German authorities."In July 2015, Ms Voßhoff proceeded to write to Ms Renate Kunast, the Chairperson of the Legal Affairs Committee of the German Federal Parliament (the "Bundestag") to bring her concerns to the attention of German parliamentarians.

The text of Ms Voßhoff's letter [PDF] reads as follows (in translation):

I was made aware of the issue of the lack of independent external data protection supervision of the European Patent Office (EPO) by the Bavarian State Commissioner for Data Protection.

My efforts to improve data protection supervision at the EPO have so far been have so far been unsuccessful.

I would therefore like to draw the attention of the German Bundestag to the problem.

The European Patent Office is an organ of the European Patent Organisation (EPO) established by the European Patent Convention (EPC) and endowed with legal personality. It is therefore a supranational institution based on an international treaty with its headquarters in Munich and offices in The Hague, Berlin, Vienna and Brussels. Vienna and Brussels with about 6,800 employees. The contracting states are 38 European countries, including all EU member states.

The legal nature of the EPO means that there is no data protection supervision by an independent external body. Neither the Bavarian State Commissioner for Data Protection nor I can derive any competence from state or federal data protection law. The EPO is neither a public body of the State of Bavaria nor of the Federal Republic of Germany. The European Data Protection Supervisor is also ruled out as an independent supervisory body, as the EPO is neither an institution nor a body of the European Union.

Even if, according to the EPO's internal data protection officer, internal data protection regulations have been in place at the EPO since 1992, in particular based on the Data Protection Directive 95/46 EC, a lack of independent external data protection supervision is also taken as given from the EPO perspective.

In the interest of safeguarding the data protection rights of those affected, I have contacted the responsible Federal Ministry of Justice and Consumer Protection (BMJV) with the request to examine measures to close this supervisory and oversight gap, for example by means of a corresponding amendment to the EPC.

The BMJV has not yet taken up this suggestion. It refers to the necessity of a diplomatic conference of all 38 contracting states of the EPC for such an institutional reform of the EPC. This time-consuming procedure would not permit an amendment in the short term.

However, the Federal Ministry of Justice gives an assurance that it will continue to advocate, within the scope of its possibilities, compliance with and further development of high data protection standards and an independent data protection structure in its committee work within the EPO.

Although I have some understanding for the BMJV's position, the permanent absence of an independent external supervisory authority for data protection matters nevertheless poses a risk - that should not be underestimated - to the fundamental right to informational self-determination of the persons concerned given the processing of a large amount of personal data of applicants and staff at the EPO.

This risk is rendered apparent by a case that has now received press coverage. In an article dated 8 June 2015 (see attachment), the Süddeutsche Zeitung reported allegations that two publicly accessible computers at the EPO were placed under surveillance with so-called keyloggers and video cameras without the persons concerned being informed. Due to the current legal situation, no independent data protection supervisory authority can investigate these allegations.

Moreover, those potentially affected, in particular members of the Administrative Council, patent attorneys, employees and visitors to the EPO, lack any possibility of turning to an independent body capable of enforcing their rights to informational self-determination.

In view of the prevailing factual and legal situation, I would be grateful if the Legal Affairs Committee would address the issue in a supportive manner.



The Legal Affairs Committee of the Bundestag reacted to Ms Voßhoff's letter by placing the matter on its agenda for a meeting scheduled to take place in October 2015 [PDF].

It seemed that the Legal Affairs Committee was gearing up to investigate the worrying "supervisory and oversight gap" identified by Ms Voßhoff.

"As far as can be determined from the available evidence, the authors of this intrigue were the duplicitous Tweedledum and Tweedledee duo of the EPO‑Federal Justice Ministry nexus, Raimund Lutz and Christoph Ernst."However, as we shall see in due course, Ms Voßhoff's efforts to have the deficiencies in the EPO's data protection framework subjected to meaningful parliamentary scrutiny were derailed by what appears to have been a nefarious behind-the-scenes intrigue.

As far as can be determined from the available evidence, the authors of this intrigue were the duplicitous Tweedledum and Tweedledee duo of the EPO‑Federal Justice Ministry nexus, Raimund Lutz and Christoph Ernst.

Before delving into the details of the intrigue which derailed Ms Voßhoff's initiative, we will make a detour to look more closely at these two individuals and their respective roles in EPO affairs over the last two decades.

Recent Techrights' Posts

CISA Has a Microsoft Conflict of Interest Problem (CISA Cannot Achieve Its Goals, It Protects the Worst Culprit)
people from Microsoft "speaking for" "Open Source" and for "security"
 
Links 26/04/2024: XBox Sales Have Collapsed, Facebook's Shares Collapse Too
Links for the day
Albanian women, Brazilian women & Debian Outreachy racism under Chris Lamb
Reprinted with permission from disguised.work
Microsoft-Funded 'News' Site: XBox Hardware Revenue Declined by 31%
Ignore the ludicrous media spin
Mark Shuttleworth, Elio Qoshi & Debian/Ubuntu underage girls
Reprinted with permission from disguised.work
Karen Sandler, Outreachy & Debian Money in Albania
Reprinted with permission from disguised.work
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, April 25, 2024
IRC logs for Thursday, April 25, 2024
Links 26/04/2024: Facebook Collapses, Kangaroo Courts for Patents, BlizzCon Canceled Under Microsoft
Links for the day
Gemini Links 26/04/2024: Music, Philosophy, and Socialising
Links for the day
Microsoft Claims "Goodwill" Is an Asset Valued at $119,163,000,000, Cash Decreased From $34,704,000,000 to $19,634,000,000 and Total Liabilities Grew to $231,123,000,000
Earnings Release FY24 Q3
More Microsoft Cuts: Events Canceled, Real Sales Down Sharply
So they will call (or rebrand) everything "AI" or "Azure" or "cloud" while adding revenues from Blizzard to pretend something is growing
Links 25/04/2024: South Korean Military to Ban iPhone, Armenian Remembrance Day
Links for the day
Gemini Links 25/04/2024: SFTP, VoIP, Streaming, Full-Content Web Feeds, and Gemini Thoughts
Links for the day
Audiocasts/Shows: FLOSS Weekly and mintCast
the latest pair of episodes
[Meme] Arvind Krishna's Business Machines
He is harming Red Hat in a number of ways (he doesn't understand it) and Fedora users are running out of patience (many volunteers quit years ago)
[Video] Debian's Newfound Love of Censorship Has Become a Threat to the Entire Internet
SPI/Debian might end up with rotten tomatoes in the face
Joerg (Ganneff) Jaspert, Dalbergschule Fulda & Debian Death threats
Reprinted with permission from disguised.work
Amber Heard, Junior Female Developers & Debian Embezzlement
Reprinted with permission from disguised.work
[Video] Time to Acknowledge Debian Has a Real Problem and This Problem Needs to be Solved
it would make sense to try to resolve conflicts and issues, not exacerbate these
Daniel Pocock elected on ANZAC Day and anniversary of Easter Rising (FSFE Fellowship)
Reprinted with permission from Daniel Pocock
[Video] IBM's Poor Results Reinforce the Idea of Mass Layoffs on the Way (Just Like at Microsoft)
it seems likely Red Hat layoffs are in the making
Ulrike Uhlig & Debian, the $200,000 woman who quit
Reprinted with permission from disguised.work
IRC Proceedings: Wednesday, April 24, 2024
IRC logs for Wednesday, April 24, 2024
Over at Tux Machines...
GNU/Linux news for the past day
Links 24/04/2024: Layoffs and Shutdowns at Microsoft, Apple Sales in China Have Collapsed
Links for the day
Sexism processing travel reimbursement
Reprinted with permission from disguised.work
Girlfriends, Sex, Prostitution & Debian at DebConf22, Prizren, Kosovo
Reprinted with permission from disguised.work
Microsoft is Shutting Down Offices and Studios (Microsoft Layoffs Every Month This Year, Media Barely Mentions These)
Microsoft shutting down more offices (there have been layoffs every month this year)
Balkan women & Debian sexism, WeBoob leaks
Reprinted with permission from disguised.work
Martina Ferrari & Debian, DebConf room list: who sleeps with who?
Reprinted with permission from Daniel Pocock
Links 24/04/2024: Advances in TikTok Ban, Microsoft Lacks Security Incentives (It Profits From Breaches)
Links for the day
Gemini Links 24/04/2024: People Returning to Gemlogs, Stateless Workstations
Links for the day
Meike Reichle & Debian Dating
Reprinted with permission from disguised.work
Europe Won't be Safe From Russia Until the Last Windows PC is Turned Off (or Switched to BSDs and GNU/Linux)
Lives are at stake
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, April 23, 2024
IRC logs for Tuesday, April 23, 2024
[Meme] EPO: Breaking the Law as a Business Model
Total disregard for the EPO to sell more monopolies in Europe (to companies that are seldom European and in need of monopoly)
The EPO's Central Staff Committee (CSC) on New Ways of Working (NWoW) and “Bringing Teams Together” (BTT)
The latest publication from the Central Staff Committee (CSC)
Volunteers wanted: Unknown Suspects team
Reprinted with permission from Daniel Pocock
Debian trademark: where does the value come from?
Reprinted with permission from Daniel Pocock