Arbeitspapier
Promise not Fulfilled: FinTech Data Privacy, and the GDPR
This article analyzes how the General Data Protection Regulation (GDPR) has affected the privacy practices of FinTech firms. We study the content of 308 privacy statements respectively before and after the GDPR became binding. Using textual analysis methods, we find that the readability of the privacy statements has decreased. The texts of privacy statements have become longer and use more standardized language, resulting in worse user comprehension. This calls into question whether the GDPR has achieved its original goal—the protection of natural persons regarding the processing of personal data. We also analyze the content of privacy statements and link it to company- and industry-specific determinants. Before the GDPR became binding, more external investors and a higher legal capital were related to a higher quantity of data processed and more transparency, but not thereafter. Finally, we document mimicking behavior among industry peers with regard to the data processed and transparency.
- Sprache
-
Englisch
- Erschienen in
-
Series: CESifo Working Paper ; No. 9359
- Klassifikation
-
Wirtschaft
Regulation and Business Law: General
Retail and Wholesale Trade; e-Commerce
- Thema
-
data privacy
FinTech
General Data Protection Regulation
privacy statement
textual analysis
financial technology
- Ereignis
-
Geistige Schöpfung
- (wer)
-
Dorfleitner, Gregor
Hornuf, Lars
Kreppmeier, Julia
- Ereignis
-
Veröffentlichung
- (wer)
-
Center for Economic Studies and ifo Institute (CESifo)
- (wo)
-
Munich
- (wann)
-
2021
- Handle
- Letzte Aktualisierung
-
10.03.2025, 11:43 MEZ
Datenpartner
ZBW - Deutsche Zentralbibliothek für Wirtschaftswissenschaften - Leibniz-Informationszentrum Wirtschaft. Bei Fragen zum Objekt wenden Sie sich bitte an den Datenpartner.
Objekttyp
- Arbeitspapier
Beteiligte
- Dorfleitner, Gregor
- Hornuf, Lars
- Kreppmeier, Julia
- Center for Economic Studies and ifo Institute (CESifo)
Entstanden
- 2021