Passkeys instead of passwords

White House issues Executive Order on AI

English Information Commissioner issues guidance re: monitoring workers

Amendments to the FOIP Regulations

Chief Information Officer of Canada bans WeChat and Kaspersky applications from government-issued mobile devices

Ontario IPC investigates hospital breaches

Toronto Public Library breach

Federal public servants information breached

Ontario IPC issues draft digital charter for schools

Federal Commissioner posts personal information glossary

Tag: PHI

October 25, 2023 - Rick Yachiw, Director of Compliance

How Does our Office Keep you Anonymous?

The Commissioner publicly posts review and investigation reports regarding a variety of matters involving applicants and complainants. As much as possible, our office tries to conceal their identities. Our office also recognizes that there are times when it is warranted to conceal the identity of someone other than an applicant or a complainant. De-identification is... read more

Categories: BlogTags: , ,

September 27, 2023 - Rick Yachiw, Director of Compliance

Data Residency Outside Canada for Trustees

Trustees often ask our office about the use of an information management service provider (IMSP) to manage personal health information. Some want to know about using IMSPs linked to companies outside Canada. Once personal health information leaves Canada, it becomes subject to the laws of the country where it resides. If an individual’s personal health... read more

Categories: BlogTags: , , , , ,

September 7, 2023 - Sharon Young, Analyst

Privacy Audits (updated)

Your organization has undertaken a privacy impact assessment (PIA) as part of its process of designing and implementing a new program. So, what’s next? Once the new program has gone live, your organization should plan regular privacy audits to ensure that the program is operating in a manner that complies with applicable access and privacy... read more

Categories: BlogTags: , , ,

September 6, 2023 - Ron Kruzeniski, Information and Privacy Commissioner

Collection/Disclosure; A Two-Step Analysis (updated)

When personal information or personal health information (information) is shared by one public body with another, the issue arises as to who has the authority to disclose and who has the authority to collect. Many collections of information happen when you or I visit a public body, apply for a service or benefit and fill... read more

Categories: BlogTags: , , , , , , ,