DSA compliance guide – be prepared for the DSA
Since February 17, 2024, digital service providers are required to comply with a comprehensive catalog of obligations set out in the Digital Services Act (DSA). Not sure where to start preparing?
Therefore, we have prepared a brief checklist on how to prepare for the DSA. The guide includes basic points and needs to be adapted to the individual needs of your organization. If you have any questions, please contact our team.
1. Check if the DSA applies to you
Does your company or service fall under the scope of the DSA?
a) The DSA applies to providers that have an establishment in the EU.
b) If the establishment is outside the EU, the DSA will apply to the provider if there is a so-called substantial connection with the EU. For example, if the provider has a significant number of users or recipients of the service in the EU or targets its activities to one or more Member States.
Thus, the DSA applies to all providers of intermediary services if they offer their services in the EU.
2. Check what type of intermediary you are
- Mere conduit (access) provider
- Caching provider
- Hosting provider
- Online platform provider
- Online B2C marketplace provider (i.e., online platforms that allow consumers to conclude contracts with traders at a distance)
- Provider of very large online platforms and very large online search engines
3. Check what types of obligations apply to you
This step will be the basis of the process for ensuring compliance with the DSA. Below is a general overview of obligations prepared by the European Commission and adopted by the Czech Ministry of Industry and Trade (MPO). The list of obligations needs to be individually adjusted depending on the type of intermediary service your company provides.
New obligations | Intermediary services (comulative obligations) | Hosting services (comulative obligations) | Online platforms (comulative obligations) | Very large online platforms (comulative obligations) |
---|---|---|---|---|
Transparency reporting | ✓ | ✓ | ✓ | ✓ |
Requirements on terms of service due account of fundamental rights | ✓ | ✓ | ✓ | ✓ |
Cooperation with national authorities following orders | ✓ | ✓ | ✓ | ✓ |
Points of contact and, where necessary, legal representative | ✓ | ✓ | ✓ | ✓ |
„Notice and action“ and obligation to provide information to users | ✓ | ✓ | ✓ | |
Reporting criminal offences | ✓ | ✓ | ✓ | |
Complaint and redress internal mechanism and out of court dispute settlement | ✓ | ✓ | ||
Trusted flaggers | ✓ | ✓ | ||
Measures against abusive notices and counter-notice | ✓ | ✓ | ||
Special obligations for marketplaces, e.g. vetting credentials of third party suppliers, compliance by design, random checks | ✓ | ✓ | ||
Bans on targeted adverts to children and those based on special characteristics of users | ✓ | ✓ | ||
Transparency of recommender systems | ✓ | ✓ | ||
User-facing transparency of online advertising | ✓ | ✓ | ||
Risk management obligations and crisis response | ✓ | |||
External and independent auditing | ✓ | |||
User choice not to have recommendations based on profiling | ✓ | |||
Data sharing with authorities and researchers | ✓ | |||
Codes of conduct | ✓ | |||
Crisis response cooperation | ✓ |
4. Project planning for implementing obligations according to the DSA
Many obligations arising from the DSA cannot be implemented overnight and need time to be introduced and launched in your company. Therefore, we recommend including in the implementation plan:
- Defining the scope of your service.
- Categorizing your service according to the DSA.
- Analysis of weaknesses and deficiencies.
- Risk analysis.
- Project plan (project planning, involvement of all responsible persons, and defining own priorities).
- Implementation of a structure to ensure compliance with the DSA.
- Monitoring and following new regulations by the European Commission. We welcome all such acts as they will provide us with further details and interpretation.
- Conducting controls and updates taking into account the measures taken.
If you are interested in more information or in an offer of our legal services, please do not hesitate contact us at info@stuchlikova.com or call +420 222 767 393.