Publication
Motor Finance Redress: The Way Ahead
On August 1, 2025, the UK Supreme Court delivered its long-awaited judgment in Hopcraft v Close Brothers Limited and on 3 August the FCA announced it would consult on a redress scheme.
Global | Publication | April 2018
The EU General Data Protection Regulation (GDPR) will apply directly in all EU Member States from 25 May 2018. It will repeal and replace Directive 95/46EC and its Member State implementing legislation.
Together with the Directive on the Processing of Personal Data for the Purpose of Crime Prevention, the GDPR presents the most ambitious and comprehensive changes to data protection rules around the world in the last 20 years.
The GDPR rules apply to almost all private sector processing by organisations in the EU or by organisations outside the EU which target EU residents. The export regime will ensure their impact is felt where such organisations transfer personal data to the EU. The maximum fines for non-compliance are the higher of €20m and 4 per cent of the organisation’s worldwide turnover.
The concept of accountability is at the heart of the GDPR rules: it means that organisations need to be able to demonstrate that they have analysed the GDPR’s requirements in relation to their processing of personal data and that they have implemented a system or programme that allows them to achieve compliance.
Our GDPR checklist is designed to give an illustrative overview of the requirements likely to impact most types of businesses and the practical steps that organisations need to take to meet those requirements. It can be used to gain an understanding of where an organisation has gaps in its compliance and to articulate how its control programme meets the requirements. It should be noted that certain parts of the GDPR (such as exceptions to the data subject rights and where processing is in the substantial public interest) are supplemented by Member State local legislation and guidance from local data protection authorities and the Article 29 Working Party, which becomes the European Data Protection Board under the GDPR.
If your organisation needs assistance with analysing and implementing changes arising from the application of the GDPR please contact one of the Norton Rose Fulbright data protection team members whose details are set out at the back of the checklist.
Publication
On August 1, 2025, the UK Supreme Court delivered its long-awaited judgment in Hopcraft v Close Brothers Limited and on 3 August the FCA announced it would consult on a redress scheme.
Publication
Songa Product and Chemical Tankers III AS v Kairos Shipping II LLC [2025] EWCA Civ 1227 (07 October 2025) has clarified the extent of the obligation on the Charterer to redeliver a vessel following the termination of a Barecon 2001 charter and of the Owner’s right to require it to be redelivered to a port “convenient to them”.
Publication
On 13 November 2025, the European Parliament adopted (subject to certain amendments) the substantive Omnibus Directive which was proposed by the European Commission on 26 February 2025 (see our previous briefing here). The Omnibus proposal has now been referred to the Committee of Legal Affairs to proceed to the trilogue negotiations.
Subscribe and stay up to date with the latest legal news, information and events . . .
© Norton Rose Fulbright LLP 2025