The Norwegian Consumer Council made waves in early 2021 after its complaint to Norway's data protection authority, Datatilsynet, against Grindr resulted in an intention to fine the company $12 million, the highest fine ever levied by the nation’s DPA. The fine amounts to 10% of the company’s annual global turnover. Grindr has now responded to the proposed enforcement action, arguing it has refined its consent mechanism and believes the DPA will find Grindr is committed to complying with the EU General Data Protection Regulation. The NCC has long worked with other advocacy organizations to bring protections and awareness for consumers around privacy issues in the marketplace. In 2018, they released an in-depth report on “dark patterns” to demonstrate how companies nudge users into making decisions that may not always be in their best interest. IAPP Editorial Director Jedidiah Bracy, CIPP, recently caught up with the NCC’s Finn Myrstad to discuss the NCC's case against Grindr and, more broadly, what companies can do to avoid using dark patterns at the expense of their users.
23 March 2021
Finn Myrstad on privacy case against Grindr, 'dark patterns'
Related stories
A view from Brussels: The challenge of intimate privacy
Notes from the Asia-Pacific region: India feels geopolitical impacts, awaits DPDPA rules, and more
Notas de la IAPP América Latina, 5 agosto 2025
Las PyMEs y la protección de datos personales: iniciativas para promover el cumplimiento
Continúa la tramitación del Proyecto de Ley sobre IA en Chile
This article is eligible for Continuing Professional Education credits. Please self-submit according to CPE policy guidelines.