{"id":706,"date":"2023-07-20T08:45:00","date_gmt":"2023-07-20T06:45:00","guid":{"rendered":"https:\/\/www.cookiebot.com\/en\/?p=706"},"modified":"2026-03-12T09:15:28","modified_gmt":"2026-03-12T08:15:28","slug":"swiss-fadp","status":"publish","type":"post","link":"https:\/\/www.cookiebot.com\/en\/swiss-fadp\/","title":{"rendered":"FADP - Switzerland's Federal Act on Data Protection"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\" id=\"h-the-swiss-data-protection-act-fadp-in-short\">The Swiss Data Protection Act (FADP), in short<\/h2>\n\n\n\n<p>On 25 September 2020, Switzerland adopted a new version of <a href=\"https:\/\/www.fedlex.admin.ch\/eli\/cc\/1993\/1945_1945_1945\/en\/\" target=\"_blank\" rel=\"noreferrer noopener\">the Federal Data Protection Act (FADP)<\/a>, replacing the 1992 Act in order to reach a level of data protection close to that of the <a href=\"\/en\/gdpr\/\">EU\u2019s GDPR<\/a>.<\/p>\n\n\n\n<p>Aligning its data privacy laws with those of the EU \u2013 namely the <a href=\"\/en\/gdpr\/\">EU\u2019s General Data Protection Regulation (GDPR)<\/a>&nbsp;\u2013 was a driving force behind the revision of the 1992 Data Protection Act, ensuring continued flow of personal data in and out of Switzerland.<\/p>\n\n\n\n<p>The result \u2013 the new Swiss FADP \u2013 is a data privacy law that has similarities with the EU\u2019s GDPR, such as requiring consent in certain cases.<\/p>\n\n\n\n<p>If you have users inside of Switzerland, being compliant with the new Swiss FADP is an obligation. Steep fines are levied against non-compliant domains. But the good news is, if you\u2019re already compliant with the EU\u2019s GDPR, you are almost certainly compliant with the Swiss FADP too.<\/p>\n\n\n\n<p><a href=\"\/\">Scan for free to see your website\u2019s GDPR compliance level<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/admin.cookiebot.com\/signup\" target=\"_blank\" rel=\"noreferrer noopener\">Try Cookiebot CMP free for 14 days<\/a>\u00a0\u2013 or forever if you have a small website.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter is-resized is-style-cb-rounded\"><img decoding=\"async\" src=\"\/media\/4324\/cuckoo-clock.jpg?width=450&amp;&amp;mode=max\" alt=\"Red cuckoo clock - Cookiebot\" width=\"500px\" height=\"333px\"\/><figcaption class=\"wp-element-caption\">The new 2020 Swiss Data Protection Act (FADP) will come into force in 2022 without a grace period.<\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-the-swiss-privacy-law-quick-breakdown\">The Swiss privacy law - quick breakdown<\/h3>\n\n\n\n<ul style=\"background-color:#f3f7fe\" class=\"is-style-default cb-rounded has-background wp-block-list\">\n<li><strong>The Swiss FADP<\/strong>&nbsp;(Federal Data Protection Act) was adopted on September 25 2020, replaces the previous 1992 Act, and will come into force in September 2023. It will not provide for a grace period, meaning businesses will have to be in compliance on the date of effect.<\/li>\n\n\n\n<li><strong>The Swiss FADP<\/strong>&nbsp;enhances data protection in Switzerland and aligns it with the EU\u2019s GDPR to ensure the continued flow of personal data from the European Economic Area to Switzerland.<\/li>\n\n\n\n<li><strong>The Swiss FADP<\/strong>&nbsp;requires a website to obtain the consent from users inside Switzerland if e.g. they process&nbsp;- sensitive personal data or transfers data to a third country without adequate protection. It also requires your website to have a privacy policy.<\/li>\n\n\n\n<li><strong>The Swiss FADP<\/strong> defines personal data as any information relating to an identified or identifiable natural person, e.g. IP addresses. Additionally, the Swiss FADP defines sensitive personal data to include information about race, health, religious or political convictions, genetics and biometrics, social security and sexual life.<\/li>\n\n\n\n<li><strong>The Swiss FADP<\/strong>&nbsp;applies to both the private and public sector and has extraterritorial scope, i.e. applies to any website that processes personal data from individuals inside Switzerland, regardless of where in the world the website is located.<\/li>\n\n\n\n<li><strong>The Swiss FADP<\/strong>&nbsp;allows transfers of personal data from within Switzerland to third countries if they have an adequate level of data protection.<\/li>\n\n\n\n<li><strong>The Swiss FADP<\/strong>&nbsp;extends the investigative powers of the Federal Data Protection and Information Commissioner (FDPIC).<\/li>\n\n\n\n<li><strong>The Swiss FADP<\/strong>&nbsp;punishes non-compliance with fines of up to CHF 250,000. It also enables criminal sanctions to be imposed on private individuals responsible for a potential breach, e.g., controllers and processors, and not only companies.<\/li>\n<\/ul>\n\n\n\n<p><a href=\"\/\">Scan for free to see your website\u2019s GDPR compliance level<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/admin.cookiebot.com\/signup\" target=\"_blank\" rel=\"noreferrer noopener\">Try Cookiebot CMP free for 14 days<\/a>\u00a0\u2013 or forever if you have a small website.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-data-subject-rights-under-the-swiss-data-protection-act\">Data subject rights under the Swiss data protection act<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-swiss-fadp-compliance-with-cookiebot-cmp\">Swiss FADP compliance with Cookiebot CMP<\/h3>\n\n\n\n<p><a href=\"\/\">Cookiebot CMP<\/a>&nbsp;is a world-leading solution for making your website compliant with major data privacy laws, including the <a href=\"\/en\/gdpr\/\">EU\u2019s GDPR<\/a>, <strong>Switzerland\u2019s FADP<\/strong>, <a href=\"\/en\/ccpa\/\">California\u2019s CCPA\/CPRA<\/a>, <a href=\"\/en\/lgpd\/\">Brazil\u2019s LGPD<\/a>, <a href=\"\/en\/popia\/\">South Africa\u2019s POPIA<\/a>&nbsp;and many others.<\/p>\n\n\n\n<p>Built around an unrivaled scanning technology that is able to scan and find all cookies and similar trackers in use on your website, <a href=\"\/\">Cookiebot CMP<\/a>&nbsp;provides full transparency and control to your end-users, allowing them to make an easy and fast choice of consent, and enabling complete compliance for your website in the meantime.<\/p>\n\n\n\n<p>Balance data privacy and data-driven business on your website with highly customizable consent interfaces, automatically generated cookie policies and regular renewal of end-user consent.<\/p>\n\n\n\n<p>The geotargeting feature of <a href=\"\/\">Cookiebot CMP<\/a>&nbsp;automatically determines where in the world a user of your website is located, e.g. in the EU or in Switzerland, and presents the correct compliance solution automatically.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-the-swiss-federal-data-protection-act-in-detail\">The Swiss Federal Data Protection Act - in detail<\/h2>\n\n\n\n<p>Let\u2019s have a closer look at the Swiss FADP and its requirements for your website.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"h-swiss-fadp-on-consent-pre-ticked-boxes-and-cookie-walls\">Swiss FADP on consent, pre-ticked boxes and cookie walls<\/h4>\n\n\n\n<p>Under Switzerland\u2019s Data Protection Act (FADP), websites that process personal data from users inside Switzerland might need to first obtain the <strong>prior, freely given and, informed<\/strong> <strong>consent<\/strong> from those users in order to do so.<\/p>\n\n\n\n<p>This includes cookies that are not strictly necessary for the basic function of your website, but which process personal data for other purposes, such as analytics or marketing.<\/p>\n\n\n\n<p>Consent is required in the case of processing of particularly sensitive personal data, high-risk profiling by a private person or profiling by a federal body.<\/p>\n\n\n\n<p>Additionally consent might be needed if data is transferred to a country without an adequate level of protection.<\/p>\n\n\n\n<p>Consent to cookies is only valid if it is a <strong>real choice<\/strong>, i.e. if the user consents without coercion, pressure or other external influence. This means that <strong>a user<\/strong>&nbsp;who refuses a cookie that requires <strong>consent should not be denied certain services or benefits<\/strong>, such as access to the site.<\/p>\n\n\n\n<p>When a user refuses cookies, they should not be exposed to any negative consequences and should be able to continue accessing the website.<\/p>\n\n\n\n<p>Like the EU\u2019s GDPR, the Swiss FADP requires that end-user consent to cookies be <strong>specific<\/strong>, i.e. the user's consent must be sought for each type of purpose pursued by cookies.<\/p>\n\n\n\n<p>Consent cannot be given for a general use of all cookies without further specification of what data is collected via those cookies and for what purposes. Rather, the Swiss FADP requires a more detailed choice than a simple \"all or nothing\", i.e. consent for <strong>each category of cookies<\/strong>.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter is-resized is-style-cb-rounded\"><img decoding=\"async\" src=\"\/media\/4326\/chocolate.jpg?width=450&amp;&amp;mode=max\" alt=\"Illustration of chocolate bar - Cookiebot\" width=\"500px\" height=\"333px\"\/><figcaption class=\"wp-element-caption\">The Swiss&nbsp;<em>FADP<\/em>&nbsp;breaks with its older 1992 version to provide EU-adequate data protection level.<\/figcaption><\/figure>\n\n\n\n<p>Consent information should be <strong>visible<\/strong>, <strong>complete<\/strong>&nbsp;and <strong>noticeable<\/strong>. It should be written in simple terms that any user can understand and be <strong>available in all the languages of the website<\/strong>, e.g. if the website is aimed at a French- and German-speaking audience, the information on the consent banner should be written both in French and in German.<\/p>\n\n\n\n<p>This information is usually grouped in a website\u2019s privacy or cookie policy and should at least include:<\/p>\n\n\n\n<ul style=\"background-color:#f3f7fe\" class=\"cb-rounded has-background wp-block-list\">\n<li>the identity and contact details of the controller (own or third party),<\/li>\n\n\n\n<li>the purposes of the cookies that are going to be deposited and\/or read,<\/li>\n\n\n\n<li>recipients or categories of recipients of the data.<\/li>\n<\/ul>\n\n\n\n<p>Additionally it might be necessary to include the categories of the data which is processed and the countries to which the data is transferred to, in case the country does not have an adequate level of security, as well as the garanties the data transfer is based on.<\/p>\n\n\n\n<p><a href=\"\/\">Get an automatic cookie policy with Cookiebot CMP<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/admin.cookiebot.com\/signup\" target=\"_blank\" rel=\"noreferrer noopener\">Try Cookiebot CMP free for 14 days<\/a>\u00a0\u2013 or forever if you have a small website.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-main-changes-to-the-swiss-data-protection-act\">Main changes to the Swiss data protection act<\/h2>\n\n\n\n<p>As expected, there are quite a few changes to the new FADP from the previous regulation. Some of the most notable are as follows:<\/p>\n\n\n\n<p class=\"cb-rounded\"><strong>Privacy by design:<\/strong> Data privacy and protection must be a part of the process beginning with the planning stages of projects. Organizations must keep data subjects\u2019 privacy in mind at all stages of development.<\/p>\n\n\n\n<p class=\"cb-rounded\"><strong>Enhanced consent requirements: <\/strong>The updated law pays greater attention to data subjects\u2019 awareness of and education about collection and usage of their personal data. Organizations must clearly communicate about the data collected, purposes, and more, as well as users rights and options to exercise them. Consent requirements are also expanded to more cases.<\/p>\n\n\n\n<p class=\"cb-rounded\"><strong>Easier to exercise data subject rights: <\/strong>Data subjects can more easily make access requests to exercise their rights under the law. The process for individuals to request details about their personal data with any organization has been streamlined.<\/p>\n\n\n\n<p class=\"cb-rounded\"><strong>Data breach notifications: <\/strong>Organizations are required to notify users and other relevant stakeholders about a data breach or related violation as soon as possible. The FDPIC must also be notified immediately. There are clear and specific requirements for information that must be communicated about the breach. <\/p>\n\n\n\n<p class=\"cb-rounded\"><strong>Expanded powers and more severe penalties: <\/strong>Individuals have more options to restrict or reject the processing of their personal data. The FDPIC has expanded enforcement powers for violations of the law, and authorities can enact more severe penalties.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-the-new-revised-fadp-compliance-requirements\">The new revised FADP compliance requirements<\/h2>\n\n\n\n<p>The Swiss data protection act is extraterritorial, so it applies to organizations both based in Switzerland and outside of it if they provide goods or services and process Swiss residents\u2019 personal data. Companies subject to the FADP that are based outside of Switzerland need to designate a Swiss representative. This individual will liaise with the Swiss authorities and data subjects.<\/p>\n\n\n\n<p>Organizations also need to potentially make changes to their operations end to end if their data privacy and protection practices have not been sufficiently robust. These include:&nbsp;<\/p>\n\n\n\n<ul style=\"background-color:#f3f7fe\" class=\"cb-rounded is-style-cb-checked-list has-background wp-block-list\">\n<li>building \u201cprivacy by design\u201d into planning, design, and development of projects<\/li>\n\n\n\n<li>fully understanding consent requirements for data subjects and personal data processing and implementing the required measures<\/li>\n\n\n\n<li>ensuring it is clear and simple for data subjects to exercise their rights and contact the organization<\/li>\n\n\n\n<li>having strong policies and procedures for data breaches and ensuring fast notification and other required actions in the event of a violation<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-obligations-for-companies-under-fadp\">Obligations for companies under FADP<\/h2>\n\n\n\n<p>Organizations processing the personal data of Swiss residents will be required to comply as of September 2023; there will not be a grace period before enforcement. Companies that already comply with the GDPR will not have much additional work to do, but it is important that they familiarize themselves with FADP requirements. There are also some exemptions to some FADP requirements for SMEs up to 250 employees that organizations should be clear on.<\/p>\n\n\n\n<p>Data subjects must be informed about all instances of collection and use of their personal data, whether collected directly or indirectly. Organizations also need to maintain a register of processing activities, and both controllers and processors have data privacy and protection responsibilities, particularly with regards to third-party access to the data , e.g. vendors.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-why-is-it-so-important-to-comply-with-the-new-fadp\">Why is it so important to comply with the new FADP?<\/h2>\n\n\n\n<p>Ensuring compliance helps organizations ensure that their data processing is done securely and responsibly, and that use of personal data is legal. FADP compliance provides data subjects with control over their privacy and personal data.<\/p>\n\n\n\n<p>Fines for violations are one of the most important reasons compliance is important, but additionally a data breach or other violation can result in damage to a company\u2019s reputation and loss of user trust. Companies can create a competitive advantage by being clear and transparent in their communications with users and showing respect for data privacy and managing consent requirements compliantly.<\/p>\n\n\n\n<p>Achieving and maintaining FADP compliance also enables companies to compete better in the European Union, as they will meet stringent privacy requirements that enable cross-border data transfer and other common functions of doing business globally.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-gdpr-vs-new-fadp\">GDPR vs. new FADP<\/h2>\n\n\n\n<figure class=\"wp-block-table enabled-responsive is-style-regular\"><table><thead><tr><th><strong>Requirement<\/strong><\/th><th><strong>GDPR<\/strong><\/th><th><strong>FADP<\/strong><\/th><\/tr><\/thead><tbody><tr><td><strong>Penalties<\/strong><\/td><td>For first or less serious violations: 2% of global annual turnover or \u20ac10 million<br>For repeat or more serious violations: 4% of global annual turnover or \u20ac20 million.<\/td><td>Up to CHF 250,000 against a responsible individual, or if it would be too difficult to identify the individual, up to CHF 50,000 against the company.<\/td><\/tr><tr><td><strong>Information requirements<\/strong><\/td><td>Art. 13 GDPR specifies the minimum information that a privacy policy must include.<\/td><td>A privacy policy has less required information than under the GDPR. Must list all countries to which personal data is transferred.<\/td><\/tr><tr><td><strong>Records of processing activities<\/strong><\/td><td>Art. 30 GDPR specifies all information that must be included in the records.<\/td><td>Must include a list of countries to which data is exported.<\/td><\/tr><tr><td><strong>Data Protection Impact Assessments<\/strong><\/td><td>In cases of high risk, the supervisory authority must be consulted.<\/td><td>In cases of high risk, Data Protection Officer (DPO) can be consulted instead of the FDPIC.<\/td><\/tr><tr><td><strong>Data export<\/strong><\/td><td>Adequacy of export partners determined by the European Commission.<br>Standard contractual clauses or other binding corporate rules.<\/td><td>Adequacy of export partners is determined by the Swiss Federal Council.<br>EU standard contractual clauses or other binding corporate rules.<\/td><\/tr><tr><td><strong>Data breach notification<\/strong><\/td><td>Mandatory within 72 hours.<\/td><td>Mandatory \u201cas soon as possible\u201d.<\/td><\/tr><tr><td><strong>Data Protection Officer<\/strong><\/td><td>Mandatory.<\/td><td>Recommended.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-fdpic-recommendations-on-web-tracking-in-switzerland\">FDPIC recommendations on web tracking in Switzerland<\/h2>\n\n\n\n<p>In Switzerland, the <a href=\"https:\/\/www.edoeb.admin.ch\/edoeb\/en\/home.html\" target=\"_blank\" rel=\"noreferrer noopener\">Federal Data Protection and Information Commissioner (FDPIC)<\/a>&nbsp;is responsible for monitoring the compliance of companies and organizations with the <a href=\"https:\/\/www.dataprotection.ch\/user_assets\/pdfs\/201001-Unofficial-WalderWyss-Translation-of-the-CH-FDPA-V011.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">Federal Data Protection Act (FADP)<\/a><\/p>\n\n\n\n<p>The FDPIC has published guides for how your website use web-tracking tools to monitor user activity on your domain in a way that is compliant with the Swiss FADP.<\/p>\n\n\n\n<p>Your website\u2019s end-users must be<strong>&nbsp;informed in a transparent manner about the fact that their personal data is collected, the purpose of the data processing, the analysis of the data and the possibilities given to the user to object to tracking.<\/strong><\/p>\n\n\n\n<p><a href=\"\/en\/cookie-policy\/\">Learn more about how to make a cookie policy for your website<\/a><\/p>\n\n\n\n<p>In the case of sensitive personal data, end-users must explicitly confirm that they have been informed and that they agree to web-tracking, for example by a mouse click.<\/p>\n\n\n\n<p>The FDPIC states that you, as website owner or operator, are responsible for any processing of personal data from individuals inside Switzerland, even if you are using web tracking service providers. Additionally, the FDPIC points out that even the processing of a user's IP address is subject to the Federal Data Protection Act, since this address is considered personal data.<\/p>\n\n\n\n<p>The FDPIC also states that when using cookies for web-tracking purposes, a website operator must take into account the requirements of the ePrivacy Directive of the European Parliament and of the Council concerning the processing of personal data as well as the protection of privacy in the electronic communications sector.<\/p>\n\n\n\n<p><a href=\"\/\">Are you unsure whether your website complies with the ePrivacy Directive? Test your website for free with the Cookiebot CMP compliance test.<\/a><\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-transfer-of-personal-data-between-the-eu-the-us-and-switzerland\">Transfer of personal data between the EU, the US and Switzerland<\/h3>\n\n\n\n<p>On 16 July 2020, the Court of Justice of the European Union (CJEU) ended the Privacy Shield, which until then allowed data transfers from the EU to the US.<\/p>\n\n\n\n<p>The CJEU requires data controllers to assess the level of data protection in the recipient's country and suspend the transfer if such country is found to be inadequate. EU-Swiss transfers are also subject to these requirements as well.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter is-resized is-style-cb-rounded\"><img decoding=\"async\" src=\"\/media\/4327\/horn.jpg?width=450&amp;&amp;mode=max\" alt=\"Illustration of a man playing a horn - Cookiebot\" width=\"500px\" height=\"333px\"\/><figcaption class=\"wp-element-caption\">The EU-US and Switzerland-US Privacy Shield has been deemed inadequate.<\/figcaption><\/figure>\n\n\n\n<p>On 8 September 2020, following an evaluation of the EU-US Privacy Shield, the Federal Data Protection and Information Commissioner (FDPIC) also declared the Swiss-US transfer regime inadequate.<\/p>\n\n\n\n<p>In line with the CJEU, the FDPIC found that <strong>the level of data protection in the US was insufficient and the transfer mechanism under the Swiss-US Privacy Shield was invalidated.<\/strong><\/p>\n\n\n\n<p><a href=\"https:\/\/www.admin.ch\/gov\/en\/start\/documentation\/media-releases.msg-id-80318.html\" target=\"_blank\" rel=\"noreferrer noopener\">Learn more about the Switzerland-US Privacy Shield decision<\/a><\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-google-consent-mode-and-cookiebot-cmp\">Google Consent Mode and Cookiebot CMP<\/h3>\n\n\n\n<p>With <a href=\"\/en\/google-consent-mode\/\">Google Consent Mode<\/a>&nbsp;and <a href=\"\/\">Cookiebot CMP<\/a>, you can make all your website\u2019s Google-services run based on the consent state of your end-users \u2013 full GDPR compliance with optimized analytics data and ads revenue in one simple solution.<\/p>\n\n\n\n<p>Cookiebot CMP\u00a0manages the consent of your website\u2019s users, and communicates the consent states to the API running\u00a0<a href=\"\/en\/google-consent-mode\/\">Google Consent Mode<\/a>\u00a0which then governs all your favorite services (like\u00a0<a href=\"\/en\/google-analytics-gdpr\/\">Google Analytics<\/a>\u00a0and Google Ads) based on the consent state of each individual user on your website.<\/p>\n\n\n\n<p>Did a user not consent to statistics or marketing cookies?\u00a0Cookiebot CMP\u00a0informs Google Consent Mode which then makes sure that you still get aggregate and non-identifying insights into your website\u2019s performance and the possibility of showing contextual ads instead of targeted ads \u2013 respecting user privacy while optimizing your website.<\/p>\n\n\n\n<p>With <a href=\"\/\">Cookiebot CMP<\/a>&nbsp;and <a href=\"\/en\/google-consent-mode\/\">Google Consent Mode<\/a>, get instant and simple GDPR compliance plus optimized analytics data and ads revenue in one solution.<\/p>\n\n\n\n<p><a href=\"\/en\/google-consent-mode\/\">Get started with Google Consent Mode<\/a><\/p>\n\n\n\n<p><a href=\"\/\">Scan your website for free to see what cookies and trackers are in use<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/admin.cookiebot.com\/signup\" target=\"_blank\" rel=\"noreferrer noopener\">Try Cookiebot CMP free for 14 days<\/a>\u00a0\u2013 or forever if you have a small website.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-penalties-for-non-compliance-with-the-swiss-data-protection-act\">Penalties for non-compliance with the Swiss data protection act<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-swiss-privacy-laws-summarized\">Swiss privacy laws - summarized<\/h3>\n\n\n\n<p>In this blogpost, we looked at the new Swiss FADP, coming into effect in 2022, and its requirements for your website\u2019s use of cookies and trackers that process personal data from users inside Switzerland.<\/p>\n\n\n\n<p>Formed in the shape of the EU\u2019s GDPR and adopting a lot of its core definitions, the Swiss FADP is a data privacy law that requires your website to obtain consent if processing sensitive personal data from users inside Switzerland or in the case of profiling through a private person or a federal body.<\/p>\n\n\n\n<p>Like its EU sibling, it also comes with several other requirements for your website, e.g. to have an up-to-date privacy policy available to your end-users and to renew consents on a regular basis.<\/p>\n\n\n<div class=\"cta-block cta-block--size-s cta-block--only-buttons cb-ctx--blue\">\n        <div class=\"cta-block__glass\">\n        <div class=\"cta-block__inner\">\n            <div class=\"cta-block__left-column\">\n                                                    <h2 class=\"cta-block__title no-default-margin like-h4\">\n                        Cookiebot CMP\u00a0is a plug-and-play solution that automated this entire process for you \u2013 simply sign up and implement\u00a0Cookiebot CMP\u00a0straight from the cloud with a few lines of JavaScript.                    <\/h2>\n                                                                                                                                                                        <\/div>\n                            <div class=\"cta-block__right-column\">\n                                                                <div class=\"cta-block__buttons\">\n                                                    <div class=\"cta-block__buttons__button-wp\">\n                                <a id=\"bc85de6a-a32c-43a6-9cc1-39c4b977492c\" class=\"cb-button cb-button-size-l cb-button-contained  no-default-link-decoration cb-button-icon-right cta-block__buttons__button\" href=\"https:\/\/admin.cookiebot.com\/signup\" target=\"_blank\">\n<span>Get started<\/span><\/a>\n                                                            <\/div>\n                                                                        <\/div>\n                                                        <\/div>\n                    <\/div>\n    <\/div>\n<\/div>\n\n\n\n\n\n\n\n\n<div class=\"cb-highlighted-numbers cb-ctx--base\">\n                        <div class=\"cb-highlighted-numbers__heading-wp\">\n                <h2 class=\"like-h3 cb-highlighted-numbers__heading\">The most used solution for compliant use of cookies and online tracking<\/h2>\n            <\/div>\n                <div\n            class=\"cb-highlighted-numbers__cards\">\n                            <div class=\"cb-highlighted-numbers__item \">\n                                                                    <div class=\"cb-highlighted-numbers__number like-h1\">2.4M <\/div>\n                        <div class=\"cb-highlighted-numbers__text like-text-lg\">websites and apps<\/div>\n                                    <\/div>\n                            <div class=\"cb-highlighted-numbers__item \">\n                                                                    <div class=\"cb-highlighted-numbers__number like-h1\">8.8B<\/div>\n                        <div class=\"cb-highlighted-numbers__text like-text-lg\">monthly user consents<\/div>\n                                    <\/div>\n                            <div class=\"cb-highlighted-numbers__item \">\n                                                                    <div class=\"cb-highlighted-numbers__number like-h1\">47+<\/div>\n                        <div class=\"cb-highlighted-numbers__text like-text-lg\">languages<\/div>\n                                    <\/div>\n                            <div class=\"cb-highlighted-numbers__item \">\n                                                                    <div class=\"cb-highlighted-numbers__number like-h1\">600,000+<\/div>\n                        <div class=\"cb-highlighted-numbers__text like-text-lg\">customers<\/div>\n                                    <\/div>\n                    <\/div>\n        <\/div>\n\n\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n    <div class=\"cb-customers\">\n            <div class=\"cb-customers__track\">\n                    <div class=\"cb-customers__customer\">\n                <img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.cookiebot.com\/en\/wp-content\/uploads\/sites\/7\/2023\/11\/pepco_group_logo_340px_01-1.svg?v=1548f22bcec1f087\"\n                     alt=\"Pepco\" width=\"340\" height=\"105\">\n            <\/div>\n                        <div class=\"cb-customers__customer\">\n                <img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.cookiebot.com\/en\/wp-content\/uploads\/sites\/7\/2023\/11\/rural-king.svg?v=c61b94b055f7f6f1\"\n                     alt=\"rural-king\" width=\"340\" height=\"78\">\n            <\/div>\n                        <div class=\"cb-customers__customer\">\n                <img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.cookiebot.com\/en\/wp-content\/uploads\/sites\/7\/2023\/11\/orbico.svg?v=0c403b5e138f2d8e\"\n                     alt=\"orbico\" width=\"341\" height=\"68\">\n            <\/div>\n                        <div class=\"cb-customers__customer\">\n                <img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.cookiebot.com\/en\/wp-content\/uploads\/sites\/7\/2023\/11\/credit-exchange.svg?v=6bb93c10d76574f5\"\n                     alt=\"credit-exchange\" width=\"340\" height=\"64\">\n            <\/div>\n                        <div class=\"cb-customers__customer\">\n                <img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.cookiebot.com\/en\/wp-content\/uploads\/sites\/7\/2023\/11\/canon.svg?v=d58e7999bf5b46cc\"\n                     alt=\"canon\" width=\"340\" height=\"72\">\n            <\/div>\n                        <div class=\"cb-customers__customer\">\n                <img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.cookiebot.com\/en\/wp-content\/uploads\/sites\/7\/2023\/11\/bauhaus.svg?v=695ed7c488c3a310\"\n                     alt=\"bauhaus\" width=\"338\" height=\"66\">\n            <\/div>\n                        <\/div>\n    <\/div>\n","protected":false},"excerpt":{"rendered":"<p>The Swiss Data Protection Act (FADP), in short On 25 September 2020, Switzerland adopted a new version of the Federal Data Protection Act (FADP), replacing the 1992 Act in order to reach a level of data protection close to that of the EU\u2019s GDPR. Aligning its data privacy laws with those of the EU \u2013 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":718,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"editor_notices":[],"footnotes":""},"categories":[1],"tags":[],"class_list":["post-706","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"acf":[],"thumbnail_status":false,"thumbnail_url":"https:\/\/www.cookiebot.com\/en\/wp-content\/uploads\/sites\/7\/2022\/05\/army-knife_1200x630_ffffff.png","_links":{"self":[{"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/posts\/706","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/comments?post=706"}],"version-history":[{"count":0,"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/posts\/706\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/media\/718"}],"wp:attachment":[{"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/media?parent=706"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/categories?post=706"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cookiebot.com\/en\/wp-json\/wp\/v2\/tags?post=706"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}