Israel Postpones Possibility of Any U.S.-EU Safe Harbor Enforcement
Time 2 Minute Read

On January 21, 2016, the Israeli Law, Information and Technology Authority (“ILITA”) announced that it would postpone for the time being any review or enforcement actions on data transfers from Israel to the United States that are based on the U.S.-EU Safe Harbor framework.

This contradicts an earlier statement by ILITA in October 2015 that it would not permit such data transfers following the Schrems decision by the Court of Justice of the European Union that declared the Safe Harbor framework invalid.

Israel’s privacy regulations permit the transfer of personal data outside of Israel under certain circumstances, including transfers made “to a country to which the European Union permits transfers.” Because of this, Israel relied on the Safe Harbor framework as a legal basis that enabled data transfers from Israel to the U.S. The Article 29 Working Party and others have urged regulators to adopt a new legal framework by January 31, 2016, to permit the transfer of personal data from the EU to the U.S. that complies with the requirements of the Schrems decision. It is not clear whether the impending deadline will be reached, so ILITA has decided that the best course of action will be to postpone any potential Safe Harbor-related enforcement until there is more clarity on this issue.

You May Also Be Interested In

Time 2 Minute Read

On February 23, 2026, a Joint Statement on AI-Generated Imagery was published by 61 data protection authorities. The Joint Statement addresses concerns regarding AI systems capable of generating realistic images and videos depicting identifiable individuals without their knowledge or consent.

Time 2 Minute Read

On January 30, 2026, the Cybersecurity Administration of China released a Q&A document on policies and regulations for the security management of cross-border data transfers. 

Time 1 Minute Read

On January 26, 2026, the Brazilian data protection authority (“ANPD”) announced that Brazil and the European Union agreed to mutually recognize the adequacy of each other’s data protection networks.

Time 2 Minute Read

On January 15, 2026, the UK Information Commissioner’s Office published updated guidance on international transfers of personal data under the UK GDPR.

Search

Subscribe Arrow

Recent Posts

Categories

Tags

Archives

Jump to Page