Loading...
Skip to main content

Like many websites, BSA’s websites use cookies to ensure the efficient functioning of those websites and give our users the best possible experience. You can learn more about how we use cookies, and how you can change your browser's cookie settings, in our cookies statement. By continuing to use this site without changing your cookie settings, you consent to our use of cookies.

X

SEP 15, 2026 | EUROPEAN UNION | EUROPE, MIDDLE EAST AND AFRICA | GOVERNMENT SUBMISSION

EU: BSA Submission on Safeguarding the EU's Data Sovereignty

BSA's submission to the European Commission's consultation on safeguarding the EU's data sovereignty calls for the EU to secure enforceable commitments from trading partners against data localisation, forced data transfers, and forced disclosure of source code and security architecture. It highlights barriers specific to global enterprise software, cloud, cybersecurity, and AI providers — including sovereign-cloud accreditation regimes, conditional transfer-approval processes, and the emerging localisation of AI training data — while cautioning that EU instruments such as the Cloud and AI Development Act and national schemes like SecNumCloud risk replicating the same origin-based criteria the Commission is asking trading partners to abandon. The contribution stresses that sovereignty is best secured through governance, not geography, and warns against reciprocal EU localisation as a response to foreign discrimination, which would harm European businesses and public bodies before it affects its intended target.

Download PDF
TAGS: