Finnish sectoral acts coordinating with Tietosuojalaki + GDPR. SVTSL (Information Society Code 917/2014 / Sahkoisen viestinnan palveluista annettu laki): regulates electronic communications services + ePrivacy + cookies + electronic marketing. SVTSL Section 205 transposes ePrivacy Directive 2002/58/EC + requires PRIOR CONSENT for cookies + similar tracking technologies except for strictly-necessary cookies + first-party analytics under recital-25-style limited interpretation; consent must be freely given + specific + informed + unambiguous + GDPR Article 7 valid; the Finnish Transport and Communications Agency (Traficom) supervises ePrivacy + the Tietosuojavaltuutettu supervises GDPR overlap; DIRECT MARKETING by email or SMS requires PRIOR CONSENT except for customer-existing-relationship soft opt-in for similar products; UNSUBSCRIBE link required in every marketing message. INFORMATION SOCIETY CODE: covers telecommunications service providers + data retention + lawful intercept + emergency communications. CYBERSECURITY ACT 2024 (Kyberturvallisuuslaki): implements EU NIS2 Directive (Directive (EU) 2022/2555); covers essential + important entities across 18 sectors; requires risk management + INCIDENT REPORTING (24h early warning + 72h incident notification + 30-day final report); supervised by Traficom + sector-specific authorities; coordinates with Tietosuojalaki for personal-data-related incidents.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.