December 12, 2024

How the EU’s Digital Services Act Impacts Data Privacy Practices in 2024

How the EU’s Digital Services Act Impacts Data Privacy Practices in 2024

The EU’s Digital Services Act (DSA), effective as of 2024, represents a transformative step toward regulating online platforms and protecting users' digital rights. By focusing on transparency, accountability, and user control, the DSA directly impacts data privacy practices. In this blog post, we’ll explore how businesses can align with the DSA’s requirements and ensure compliance while safeguarding user data.

1. What is the Digital Services Act?
The DSA is a regulatory framework by the European Union aimed at creating a safer online environment. It applies to online intermediaries, such as social media platforms, marketplaces, and search engines. Key objectives include:

  • Enhancing transparency in online advertising.
  • Ensuring swift removal of illegal content.
  • Protecting minors and vulnerable users from harmful content.

2. Key Data Privacy Provisions in the DSA
While primarily focused on digital services, the DSA significantly intersects with data privacy. Major provisions include:

  • Transparency in Targeted Ads: Businesses must disclose the algorithms and personal data used for targeted advertising.
  • User Consent: Companies must obtain clear, informed, and freely given consent before processing user data.
  • Data Minimization: Platforms are encouraged to collect only the data strictly necessary for their services.
  • Access and Portability: Users can request access to their data or demand portability to other platforms.

3. Compliance Checklist for Businesses
To meet DSA and GDPR requirements simultaneously, businesses can follow these steps:

  • Audit Your Data Practices: Ensure that all collected data aligns with the purpose stated to users.
  • Implement Transparent Advertising Policies: Clearly communicate how algorithms and user data power targeted ads.
  • Enhance Content Moderation Tools: Develop mechanisms for reporting and removing illegal content effectively.
  • Update Privacy Policies: Reflect both GDPR and DSA compliance in your privacy notices.

4. Challenges Businesses May Face
Compliance with the DSA can be resource-intensive. Common hurdles include:

  • High costs for implementing transparency tools.
  • Complexities in balancing algorithmic transparency with trade secrets.
  • Difficulties in integrating the DSA’s requirements into existing data protection practices.

5. Opportunities Created by the DSA
Despite challenges, the DSA opens doors for businesses to build user trust. By adopting user-first privacy practices, companies can:

  • Enhance customer loyalty through transparency.
  • Gain a competitive edge by showcasing robust privacy protections.
  • Mitigate risks of fines and reputational damage.


The DSA is not just a regulatory burden—it’s an opportunity for companies to strengthen their data privacy frameworks. By aligning with both the DSA and GDPR, businesses can create a more trustworthy and transparent digital experience. Start preparing today to stay ahead in the evolving regulatory landscape.