O. Tene and J. Polonetsky, Big Data for All: Privacy and User Control in the Age of Analytics, p.11

, Nw. J. Tech. & Intell. Prop, p.239, 2013.

. Gillespie, The Relevance of Algorithms, Media Technologies: Essays on Communication, 2012.

N. Vedder, , vol.59

F. Pasquale, The Black Box Society: The Secret Algorithms That Control Money and Information, pp.2015-9780674368279

, For a more extensive analysis of "technical and contextual complexity of algorithms" check Vedder and Naudts, Complexity, issue.59

, i) the tangible parts/devices (Sensors, actuators, hardware), ii) the different software components and applications, to iii) the data itself, iv) the data services, Commission Staff Working Document: Liability for Emerging Digital Technologies SWD(2018) 137 Final, vol.9

N. Vedder, , vol.59

, AI software can reason, gather knowledge, plan intelligently, learn, communicate. Perceive and manipulate objects

, These are characteristics identified and grouped by the Commission (n 79)

. Purtova, supposed to "cast light on the interpretation to be given to a legal rule

, A DPIA can also be useful for assessing the data protection impact of a technology product, for example a piece of hardware or software, where this is likely to be used by different data controllers to carry out different processing operations. Of course, the data controller deploying the product remains obliged to carry out its own DPIA with regard to the specific implementation, Article, vol.29, issue.6

, EDPS, issue.31, p.37

. Wachter,

G. Biczók and P. Chia, Interdependent Privacy: Let Me Share Your Data, Financial Cryptography and Data Security, 2013.

B. Mittelstadt, From Individual to Group Privacy in Big Data Analytics, Philosophy & Technology, vol.30, p.475, 2017.

A. Mantelero, From Group Privacy to Collective Privacy: Towards a New Dimension of Privacy and Data Protection in the Big Data Era, Group Privacy: New Challenges of Data Technologies, 2017.

L. Floridi, Group Privacy: A Defence and an Interpretation, Group Privacy: New Challenges of Data Technologies, 2017.

, Directive 95/46/EC of the European Parliament and of the Council of 24 October 1995 on the protection of individuals with regard to the processing of personal data and on the free movement of such data, OJ L, vol.281, issue.11, pp.31-50, 1995.

, on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation), vol.27, pp.1-88, 2016.

C. Case,

C. Case,

C. Case,

, Joined Cases C-293/12 and C-594/12, Digital Rights Ireland and Seitlinger and Others, 2014.

C. Case,

T. Case,

C. Case,

, Case 215/88 Casa Fleischhandels-GmbH v Bundesanstalt für landwirtschaftliche Marktordnung

, Article 29 Data Protection Working Party

, Opinion 1/2010 on the Concepts of "Controller" and "Processor

, Article 29 Data Protection Working Party 'Opinion 3/2010 on the Principle of Accountability

, Article 29 Data Protection Working Party 'Opinion 05/2014 on Anonymisation Techniques

, Article 29 Data Protection Working Party 'Statement on the role of a risk-based approach in data protection legal frameworks, 2014.

, Article 29 Data Protection Working Party 'Guidelines on Data Protection Impact Assessment (DPIA) and Determining Whether Processing Is "Likely to Result in a High Risk" for the Purposes of Regulation, 2016.

, Article 29 Data Protection Working Party 'Guidelines on Automated Individual DecisionMaking and Profiling for the Purposes of Regulation, vol.679, 2016.

, Article 29 Data Protection Working Party WP 168 The Future of Privacy: Joint Contribution to the Consultation of the European Commission on the Legal Framework for the Fundamental Right to Protection of Personal Data, p.28

, Amended Proposal for a COUNCIL DIRECTIVE on the Protection of Individuals with Regard to the Processing of Personal Data and on the Free Movement of Such Data

, Communication from the Commission to the European Parliament, the European Council, the Council, the European Economic and Social Committee and the Committee of the Regions, Artificial Intelligence for Europe COM, 2018.

, Stronger protection, new opportunities -Commission guidance on the direct application of the General Data Protection Regulation as of 25, COM, 2018.

, Accompanying the document Communication from the Commission to the European Parliament, the European Council, the Council, the European Economic and Social Committee and the Committee of the Regions, Commission, Commission Staff Working Document: Liability for Emerging Digital Technologies, vol.137, 2018.

, Internet and Electoral Campaigns -Study on the use of Internet in electoral campaigns, DGI, vol.11, 2017.

, Algorithms and Human Rights Study on the Human Rights dimensions of automated data processing techniques (in particular algorithms) and possible regulatory implications, DGI, 2017.

, Opinion 5/2018, Preliminary Opinion on Privacy by Design, EDPS, p.31, 2018.

, Opinion of the EDPS on the Communication from the Commission to the European Parliament, the Council , the Economic and Social Committee and the Committee of Regions -"A comprehensive approach on personal data protection in the European Union, EDPS, 1980.

J. Alhadeff, B. Van-alsenoy, and J. Dumortier, The Accountability Principle in Data Protection Regulation: Origin, Development and Future Directions, Managing Privacy through Accountability, 2012.

G. Biczók and P. H. Chia, Interdependent Privacy: Let Me Share Your Data, Financial Cryptography and Data Security, 2013.

C. Cadwalladr and E. Graham-harrison, Revealed: 50 million Facebook profiles harvested for Cambridge Analytica in major data breach, The Guardian, 2018.

L. Floridi and . Group, Privacy: A Defence and an Interpretation, Group Privacy: New Challenges of Data Technologies, 2017.

R. Gellert and . Risk, Based Approach Is about Compliance Risk, and Why It's Not a Bad Thing, Trends und Communities der Rechtsinformatik -Trends and Communities of legal informatics : Tagungsband des 20. Internationalen Rechtsinformatik Symposions -IRIS 2017 -Proceedings of the 20th International Legal Informatics Symposium, pp.527-532

R. Gellert, Understanding the Notion of Risk in the General Data Protection Regulation, Computer Law & Security Review, vol.34, issue.2, pp.279-288, 2018.

R. Gellert, Understanding Data Protection as Risk Regulation, Internet Journal of Law, vol.18, issue.11, pp.3-15, 2015.

T. Gillespie, The Relevance of Algorithms, Media Technologies: Essays on Communication, Materiality and Society, 2012.

S. Rodotà, Data Protection as a Fundamental Right, 2009.

M. Kaminski, The Right to Explanation, 2018.

C. Kuner and . Others, The Challenge of "big Data" for Data Protection' (2012) 2 International Data Privacy Law 47

K. Lenaerts, G. , and J. A. , To Say What the Law of the EU Is : Methods of Interpretation and the European Court of Justice' (2013) EUI Working Papers AEL, 2013.

O. Lynskey, The Foundations of EU Data Protection Law, p.9780198718239, 2015.

M. Macenaite, The "Riskification" of European Data Protection Law through a two-fold Shift, European Journal of Risk Regulation, vol.8, issue.3, pp.506-540, 2017.

A. Mantelero and . From, Group Privacy to Collective Privacy: Towards a New Dimension of Privacy and Data Protection in the Big Data Era, Group Privacy: New Challenges of Data Technologies, 2017.

B. Mittelstadt, From Individual to Group Privacy in Big Data Analytics, Philosophy & Technology, vol.30, p.475, 2017.

N. Purtova, The law of everything. Broad concept of personal data and future of EU data protection law, Law, Innovation and Technology, vol.10, issue.1, pp.40-81, 2018.

F. Pasquale and . The, Black Box Society: The Secret Algorithms That Control Money and Information, pp.2015-9780674368279

C. Quelle, risk Revolution" in EU Data Protection Law: We Can't Have Our Cake and Eat It, Too, Data Protection and Privacy: The Age of Intelligent Machines, vol.10, 2017.

A. Spina, A Regulatory Mariage de Figaro: Risk Regulation, Data Protection, and Data Ethics, European Journal of Risk Regulation, vol.8, issue.1, pp.88-94, 2017.

O. Tene and J. Polonetsky, Big Data for All: Privacy and User Control in the Age of Analytics' 11 Nw, J. Tech. & Intell. Prop, p.239, 2013.

A. Vedder and L. Naudts, Accountability for the Use of Algorithms in a Big Data Environment, International Review of Law, Computers & Technology -Justice in Algorithmic Robes, vol.31, pp.206-224, 2017.

S. Wachter, The GDPR and the Internet of Things: a three-step transparency model, Law, Innovation and Technology, vol.10, issue.2, pp.266-294, 2018.

S. Wachter, B. Mittelstadt, and L. Floridi, Transparent, Explainable, and Accountable AI for Robotics, Science Robotics, vol.2, issue.6, p.6080, 2017.