Several years after passing into law, the Canadian government has finally set an effective date for long-overdue data breach disclosure rules. The requirements were included in the Digital Privacy Act that was passed in 2015, but the accompanying regulations literally took years to finalize. Earlier this year, I argued that the failure to expedite security breach disclosure rules was an embarrassing failure for successive Conservative and Liberal governments, placing the personal information of millions of Canadians at risk and effectively giving a free pass to companies that do not adequately safeguard their customers’ information.
Archive for April 4th, 2018

Law Bytes
Episode 270: Roundtable on the Bill C-22 Risks for Canadian Tech Companies Featuring VPN Services Tailscale and Windscribe
byMichael Geist

May 25, 2026
Michael Geist
May 11, 2026
Michael Geist
May 4, 2026
Michael Geist
April 27, 2026
Michael Geist
Search Results placeholder
Michael Geist on Substack
Recent Posts
The Law Bytes Podcast, Episode 270: Roundtable on the Bill C-22 Risks for Canadian Tech Companies Featuring VPN Services Tailscale and Windscribe
RCMP Confirms Bill C-22 Concerns: Police Want Law to Provide Access to Encrypted Communications
More Misinformation on Bill C-22 as the Government Struggles to Defend Its Lawful Access Plan
The Phony Phone Book Analogy: How Liberal Cabinet Ministers and MPs are Misleading Canadians About the Privacy Risks of Bill C-22
Apple on Bill C-22: “This Bill Allows the Government of Canada to Force Companies to Break Encryption by Inserting Backdoors into their Products”

