As the ePrivacy Regulation moves into trilogue negotiations, the American Chamber of Commerce to the European Union (AmCham EU) calls on co-legislators to prioritise clarity and conistency in their negotiations; laying out top-level recommendations on scope and alignment with GDPR; permitted processing of data; and privacy settings. Further review of these areas will ensure that the objectives of the regulation - to build trust and confidence in services for both consumers and businesses in digital services - are best achieved.
Clarity and consistency key for a strong ePrivacy Regulation
As the ePrivacy Regulation moves into trilogue negotiations, the American Chamber of Commerce to the European Union (AmCham EU) calls on co-legislators to prioritise clarity and conistency in their negotiations; laying out top-level recommendations on scope and alignment with GDPR; permitted processing of data; and privacy settings. Further review of these areas will ensure that the objectives of the regulation - to build trust and confidence in services for both consumers and businesses in digital services - are best achieved.

After four long years since the Commission’s proposal, the institutions' perseverance in bringing this important file to trilogues is comendable. However, in order to avoid limiting Europe’s data-driven economy we encourage negotiating parties to consider reviewing the areas of the draft regulation that we have touched upon in our paper ahead of forming trilogue compromise amendments.
Through this position paper, AmCham EU sets out three high-level points that can guide negotiators during trilogues to ensure Europe is able to continue to protect the confidentiality of communication while allowing for a competitive European data economy. Our first recommendation centres around the need to ensure the clarity of the scope of the regulation to align with the existing General Data Protection Regulation (GDPR) whilst adopting a risk-based approach to the text to ensure consistency between the two. Furthermore, the legal basis for processing of the ePrivacy Regulation must be closely aligned with those of the GDPR. Finally, including lawful bases in Article 8 to allow use of storage capabilities on-device for limited processing activities is welcomed, as well as the deletion of Article 10, provided this does not hinder introducing language that facilitates incentives for further development of privacy-preserving technologies (PPT).
Related items
:focal())
A year of giving back
Intel has called Ireland home since 1989, investing more than €30 billion and supporting 4,900 jobs. Alongside this long-term commitment, the company is helping strengthen local communities through its Signature Charity initiative. For the past 16 years, the Intel Foundation and Intel employees have selected a charity each year to support through volunteering and fundraising. In 2025, Intel Ireland chose Teach Tearmainn, the only organisation in County Kildare dedicated to supporting women and children experiencing domestic violence and abuse. Through fun runs, cycling events, a triathlon, a giving campaign, employee-led fundraising and recycling initiatives, Intel employees raised €80,000 for the charity – the company’s largest charity donation to date. These efforts show how long-term investment, employee engagement and community partnerships can help deliver meaningful support where it is needed most. Read the full story on Invested in Europe.
:focal())
Strengthening Europe’s cybersecurity framework through simplification
The review of the Cybersecurity Act (CSA 2.0) is an opportunity to build a more coherent, outcome-oriented EU cybersecurity framework. While the proposal recognises fragmentation across the Single Market, further simplification is needed to reduce overlaps and support effective compliance.
A harmonised approach to risk assessment and supervision can strengthen resilience while avoiding duplicative obligations. Certification and supply-chain measures should remain risk-based, objective, technical and aligned with international standards. Structured industry engagement and clear designation thresholds under the ICT Supply Chain Framework and a secure-by-design approach to policymaking will be essential to support cybersecurity and global interoperability. Read more on how CSA 2.0 can strengthen resilience across the Single Market.
:focal())
Industry calls for ambitious and simplified implementation of the AI Act
Together with 14 other associations, AmCham EU has signed a joint statement on the European Commission’s Digital Omnibus on AI, calling for a clear, simple and innovation-friendly implementation of the AI Act. Co-legislators should swiftly reach an agreement on an ambitious final text that keeps simplification at its core. Measures to streamline overlaps with existing EU legislation and improve legal certainty are essential, alongside targeted adjustments to ensure the framework remains practical. This includes extending grace periods for generative AI labelling requirements, ensuring greater legal clarity for AI systems entering the EU market, preserving the risk-based approach of the AI Act by exempting non high-risk systems from registration, and supporting fixed compliance deadlines for high-risk systems.
Learn how the EU can support a clear and innovation friendly framework in the joint statement.
Policy priorities
Insights and advocacy driving Europe’s policy agenda. Our priorities support growth, innovation and a stronger transatlantic economy.
Membership
Connecting business and policymakers to strengthen the voice of American companies in Europe.