GRC Report Staff

Europe’s Digital Rulebook Gets Its First Tune-Up as EU Aligns DMA & GDPR

The European Data Protection Board (EDPB) and the European Commission have issued their first-ever joint guidelines, clarifying how the Digital Markets Act (DMA) interacts with the General Data Protection Regulation (GDPR). The document aims to provide legal certainty and consistency for companies subject to both frameworks, particularly large online platforms designated as “gatekeepers.”

California Becomes First State to Mandate Built-In Browser Privacy Controls

California Governor Gavin Newsom has signed into law the California Opt Me Out Act (AB 566), authored by Assemblymember Lowenthal and sponsored by the California Privacy Protection Agency (CPPA). The law cements California’s leadership in digital privacy by requiring all browsers operating in the state to include a built-in, one-click mechanism for users to opt out of data sales and sharing online.

Italian Watchdog Fines ALD Automotive €5 Million Over Unfair Long-Term Rental Practices

Italy’s competition authority has slapped ALD Automotive Italia with a €5 million fine ($5.4 million) for misleading customers of its long-term rental service. At the heart of the case is an optional liability-limitation package, sold to almost all ALD clients, that was pitched as offering peace of mind but came with hidden strings attached.

ESG Leaders Double Down on Tech & Boardroom Oversight, KPMG Finds

If you want to know where the future of ESG assurance is headed, don’t just look at regulation, look at what the leaders are actually doing. According to KPMG’s ESG Assurance Maturity Index 2025, the companies out in front aren’t waiting for lawmakers to finish arguing over reporting standards. They’re already investing in technology, engaging their boards, and expecting real business payoffs from sustainability assurance.

U.S. Agencies Propose New Rule to Focus Supervision on Material Financial Risks

The Office of the Comptroller of the Currency (OCC) and the Federal Deposit Insurance Corporation (FDIC) have issued a joint notice of proposed rulemaking aimed at sharpening supervisory attention on material financial risks, while providing banks with greater clarity on supervisory expectations.

EBA Finds Significant Progress in EU Banks’ Anti-Money Laundering & Counter-Terrorism Financing Supervision

The European Banking Authority (EBA) has reported substantial improvements in how EU and EEA Member States supervise banks for money laundering and terrorist financing risks, marking the conclusion of a six-year review project.

ASIC Flags Widespread Failures on Auditor Independence

Australia’s corporate watchdog has delivered a stern warning to the audit sector after uncovering what it called “concerning” failures in compliance with auditor independence obligations.