Turkey: Privacy Protection

Subscribe
Privacy law and privacy regulation thought leadership, articles, podcasts, videos and webinars from expert sources across the legal world. Explore insights covering topics including GDPR, data protection, data privacy, and privacy protection.
Article
Two-Minute Recap Data Protection Law Matters Around The Globe
On 7 July 2026, the European Data Protection Board (“EDPB”) adopted draft guidelines explaining when information is genuinely anonymous. Anonymous information falls outside the General Data Protection Regulation (“GDPR”), while pseudonymised information remains subject to it. Removing names or replacing them with identification codes is not enough if an individual can still be identified using other available information
Turkey Privacy
GT
Gen Temizer
Article
The Employer’s Right To Manage And Supervise Remote Work: Legal Limits And New Areas Of Risk
Developments in information and communication technologies have led to significant transformations in working life; in particular, following the COVID-19 pandemic, the remote working model has become a widespread form of employment. The ability to carry out work without being tied to a specific location provides cost advantages and flexibility for employers, whilst also offering employees various opportunities in terms of time management and work-life balance.
Turkey Employment
SO
Sakar Law Office
Article
Otomatik Karar Verme Mekanizmalari: Riskler, Sorumluluk Ve İnsan Gözetimi
İş süreçlerinin yönetiminde hız, maliyet etkinliği ve operasyonel verimlilik arayışı tek-nolojideki yeniliklerin ortaya çıkmasında hare-kete geçirici unsurlar arasında yer almaktadır. Teknolojinin de gelişimi ile başlangıçta yalnızca mekanik süreçleri kolaylaştırmak amacıyla ge-liştirilen otomasyon sistemleri, günümüz itiba-rıyla insan müdahalesine ve katkısına neredeyse ihtiyaç duyulmaksızın bağımsız karar alabilen sistemlere dönüşmüştür.
Turkey Privacy
N
Nazali
Article
Two-Minute Recap Data Protection Law Matters Around The Globe
The Italian Data Protection Authority (“Garante”) imposed a €180,000 fine on Emirates following its investigation into the airline’s processing of passengers’ health data through its Medical Information for Fitness to Travel (“MEDIF”) process. While the authority confirmed that processing health data for the purpose of providing safe travel and special assistance was lawful and did not require consent, it found that Emirates failed to provide passengers with clear and comprehensive privacy information regarding the processing activities.
Turkey Privacy
GT
Gen Temizer
Article
KVKK-Kaza Mağdurlarının Kişisel Verilerinin İşlenmesi Hakkında Kişisel Verileri Koruma Kurulunun İlke Kararına İlişkin Kamuoyu Duyurusu
Kişisel Verileri Koruma Kurulu, kaza mağdurlarının verilerinin hasar danışmanlık şirketleri ve yetkisiz kişiler tarafından hukuka aykırı işlenmesine ilişkin ilke kararı yayımladı. Karar, sigorta eksperlerinin yetki sınırlarını, veri sorumluluklarını ve ihlal durumunda uygulanacak idari ve cezai yaptırımları detaylandırıyor.
Turkey Privacy
Universal Hukuk | Law & Consultancy
Article
İş Yerinde Giyilebilir Cihaz Teknolojisine İlişkin Yargıtay'dan İlk Karar
Bu makalede, Türkiye'de iş yerlerinde kullanılan giyilebilir takip cihazlarına ilişkin Yargıtay'ın verdiği ilk karar incelenmektedir. Karar, çalışan mahremiyeti ile işveren gözetim yetkisi arasındaki dengeyi Kişisel Verilerin Korunması Kanunu çerçevesinde ele almakta ve bu teknolojilerin kullanımında hangi kriterlerin değerlendirilmesi gerektiğini ortaya koymaktadır.
Turkey Employment
C
CBC Law Firm
Article
Important Developments Regarding The Protection Of Personal Data In 2026
Turkey's Personal Data Protection Law marked its tenth anniversary in April 2026, with accelerating efforts toward GDPR harmonization. The first half of 2026 brought significant regulatory developments including principle decisions on biometric data processing, loyalty card verification, and security camera usage, alongside guidance on artificial intelligence tools and a landmark Constitutional Court ruling on administrative penalties.
Turkey Privacy
KL
Kabine Law Office
Article
Kişisel Verileri Koruma Kurulu’nun Kaza Mağdurlarının Kişisel Verilerinin İşlenmesine İlişkin 20/05/2026 Tarihli ve 2026/1095 Sayılı İlke Kararı Hakkında
Kişisel Verileri Koruma Kurulu'nun 20 Mayıs 2026 tarihli ve 2026/1095 sayılı İlke Kararı, kaza mağdurlarının hassas durumlarını istismar eden yetkisiz kişi ve kurumların faaliyetlerini engellemek için kritik düzenlemeler getirmektedir. Karar, hasar danışmanlık şirketleri ve yetkisiz avukatların kaza mağdurlarının kişisel verilerini hukuka aykırı yollarla ele geçirerek kullan
Turkey Privacy
TA
Tunca Attorney Partnership
Article
KVKK Kapsamında Alenileştirilen Kişisel Verilerin İşlenmesine İlişkin İdari Para Cezasının Suçta ve Cezada Kanunilik İlkesi Bakımından Değerlendirilmesi Hakkında Anayasa Mahkemesi'nin 2020/32193 Başvuru Numaralı Kararı Hakkında
Turkey's Constitutional Court examines whether administrative fines imposed for processing publicly disclosed personal data violate the principle of legality in crimes and punishments. The case centers on whether regulatory interpretations can create obligations not explicitly defined in the Personal Data Protection Law, raising fundamental questions about legal predictability and constitutional safeguards in data protection enforcement.
Turkey Privacy
TA
Tunca Attorney Partnership
Article
Kişisel Verileri Koruma Kurulu’nun Mesai Takibi Amacıyla Biyometrik Veri İşlenmesine İlişkin İlke Kararına Dair Bilgi Notu
The Turkish Personal Data Protection Board has issued a landmark principle decision addressing the processing of biometric data for employee attendance tracking purposes. This decision establishes critical guidelines for employers regarding the lawful collection and use of sensitive biometric information in workplace settings. Understanding these new regulatory requirements is essential for organizations operating in Turkey to ensure compliance with data protection obligations.
Turkey Privacy
EP
Esenyel Partners
See more