search


keyboard_tab Digital Market Act 2022/1925 EN

BG CS DA DE EL EN ES ET FI FR GA HR HU IT LV LT MT NL PL PT RO SK SL SV print pdf

2022/1925 EN cercato: 'change' . Output generated live by software developed by IusOnDemand srl


expand index change:


whereas change:


definitions:


cloud tag: and the number of total unique words without stopwords is: 1090

 

Article 2

Definitions

For the purposes of this Regulation, the following definitions apply:

(1)

gatekeeper’ means an undertaking providing core_platform_services, designated pursuant to Article 3;

(2)

core_platform_service’ means any of the following:

(a)

online_intermediation_services;

(b)

online_search_engines;

(c)

online_social_networking_services;

(d)

video-sharing_platform_services;

(e)

number-independent_interpersonal_communications_services;

(f)

operating_systems;

(g)

web_browsers;

(h)

virtual_assistants;

(i)

cloud_computing_services;

(j)

online advertising services, including any advertising networks, advertising exchanges and any other advertising intermediation services, provided by an undertaking that provides any of the core_platform_services listed in points (a) to (i);

(3)

information_society_service’ means any service as defined in Article 1(1), point (b), of Directive (EU) 2015/1535;

(4)

digital_sector’ means the sector of products and services provided by means of, or through, information_society_services;

(5)

online_intermediation_services’ means online_intermediation_services as defined in Article 2, point (2), of Regulation (EU) 2019/1150;

(6)

online_search_engine’ means an online_search_engine as defined in Article 2, point (5), of Regulation (EU) 2019/1150;

(7)

online_social_networking_service’ means a platform that enables end_users to connect and communicate with each other, share content and discover other users and content across multiple devices and, in particular, via chats, posts, videos and recommendations;

(8)

video-sharing_platform_service’ means a video-sharing_platform_service as defined in Article 1(1), point (aa), of Directive 2010/13/EU;

(9)

number-independent_interpersonal_communications_service’ means a number-independent_interpersonal_communications_service as defined in Article 2, point (7), of Directive (EU) 2018/1972;

(10)

operating_system’ means a system software that controls the basic functions of the hardware or software and enables software_applications to run on it;

(11)

web_browser’ means a software_application that enables end_users to access and interact with web content hosted on servers that are connected to networks such as the Internet, including standalone web_browsers as well as web_browsers integrated or embedded in software or similar;

(12)

virtual_assistant’ means a software that can process demands, tasks or questions, including those based on audio, visual, written input, gestures or motions, and that, based on those demands, tasks or questions, provides access to other services or controls connected physical devices;

(13)

cloud_computing_service’ means a cloud_computing_service as defined in Article 4, point (19), of Directive (EU) 2016/1148 of the European Parliament and of the Council (24);

(14)

software_application_stores’ means a type of online_intermediation_services, which is focused on software_applications as the intermediated product or service;

(15)

software_application’ means any digital product or service that runs on an operating_system;

(16)

payment_service’ means a payment_service as defined in Article 4, point (3) of Directive (EU) 2015/2366;

(17)

‘technical service supporting payment_service’ means a service within the meaning of Article 3, point (j), of Directive (EU) 2015/2366;

(18)

payment_system_for_in-app_purchases’ means a software_application, service or user interface which facilitates purchases of digital content or digital services within a software_application, including content, subscriptions, features or functionality, and the payments for such purchases;

(19)

identification_service’ means a type of service provided together with or in support of core_platform_services that enables any type of verification of the identity of end_users or business_users, regardless of the technology used;

(20)

end_user’ means any natural or legal person using core_platform_services other than as a business_user;

(21)

business_user’ means any natural or legal person acting in a commercial or professional capacity using core_platform_services for the purpose of or in the course of providing goods or services to end_users;

(22)

ranking’ means the relative prominence given to goods or services offered through online_intermediation_services, online_social_networking_services, video-sharing_platform_services or virtual_assistants, or the relevance given to search_results by online_search_engines, as presented, organised or communicated by the undertakings providing online_intermediation_services, online_social_networking_services, video-sharing_platform_services, virtual_assistants or online_search_engines, irrespective of the technological means used for such presentation, organisation or communication and irrespective of whether only one result is presented or communicated;

(23)

search_results’ means any information in any format, including textual, graphic, vocal or other outputs, returned in response to, and related to, a search query, irrespective of whether the information returned is a paid or an unpaid result, a direct answer or any product, service or information offered in connection with the organic results, or displayed along with or partly or entirely embedded in them;

(24)

data’ means any digital representation of acts, facts or information and any compilation of such acts, facts or information, including in the form of sound, visual or audiovisual recording;

(25)

‘personal data’ means personal data as defined in Article 4, point (1), of Regulation (EU) 2016/679;

(26)

‘non-personal data’ means data other than personal data;

(27)

undertaking’ means an entity engaged in an economic activity, regardless of its legal status and the way in which it is financed, including all linked enterprises or connected undertakings that form a group through the direct or indirect control of an enterprise or undertaking by another;

(28)

control’ means the possibility of exercising decisive influence on an undertaking, within the meaning of Article 3(2) of Regulation (EC) No 139/2004;

(29)

interoperability’ means the ability to exchange information and mutually use the information which has been exchanged through interfaces or other solutions, so that all elements of hardware or software work with other hardware and software and with users in all the ways in which they are intended to function;

(30)

turnover’ means the amount derived by an undertaking within the meaning of Article 5(1) of Regulation (EC) No 139/2004;

(31)

profiling’ means profiling as defined in Article 4, point (4), of Regulation (EU) 2016/679;

(32)

consent’ means consent as defined in Article 4, point (11), of Regulation (EU) 2016/679;

(33)

national_court’ means a court or tribunal of a Member State within the meaning of Article 267 TFEU.

CHAPTER II

GATEKEEPERS

Article 4

Review of the status of gatekeeper

1.   The Commission may, upon request or on its own initiative, reconsider, amend or repeal at any moment a designation decision adopted pursuant to Article 3 for one of the following reasons:

(a)

there has been a substantial change in any of the facts on which the designation decision was based;

(b)

the designation decision was based on incomplete, incorrect or misleading information.

2.   The Commission shall regularly, and at least every 3 years, review whether the gatekeepers continue to satisfy the requirements laid down in Article 3(1). That review shall also examine whether the list of core_platform_services of the gatekeeper which are individually an important gateway for business_users to reach end_users, as referred to in Article 3(1), point (b), needs to be amended. Those reviews shall have no suspending effect on the gatekeeper’s obligations.

The Commission shall also examine at least every year whether new undertakings providing core_platform_services satisfy those requirements.

Where the Commission, on the basis of the reviews pursuant to the first subparagraph, finds that the facts on which the designation of the undertakings providing core_platform_services as gatekeepers was based, have changed, it shall adopt a decision confirming, amending or repealing the designation decision.

3.   The Commission shall publish and update a list of gatekeepers and the list of the core_platform_services for which they need to comply with the obligations laid down in Chapter III on an on-going basis.

CHAPTER III

PRACTICES OF GATEKEEPERS THAT LIMIT CONTESTABILITY OR ARE UNFAIR

Article 6

Obligations for gatekeepers susceptible of being further specified under Article 8

1.   The Gatekeeper shall comply with all obligations set out in this Article with respect to each of its core_platform_services listed in the designation decision pursuant to Article 3(9).

2.   The gatekeeper shall not use, in competition with business_users, any data that is not publicly available that is generated or provided by those business_users in the context of their use of the relevant core_platform_services or of the services provided together with, or in support of, the relevant core_platform_services, including data generated or provided by the customers of those business_users.

For the purposes of the first subparagraph, the data that is not publicly available shall include any aggregated and non-aggregated data generated by business_users that can be inferred from, or collected through, the commercial activities of business_users or their customers, including click, search, view and voice data, on the relevant core_platform_services or on services provided together with, or in support of, the relevant core_platform_services of the gatekeeper.

3.   The gatekeeper shall allow and technically enable end_users to easily un-install any software_applications on the operating_system of the gatekeeper, without prejudice to the possibility for that gatekeeper to restrict such un-installation in relation to software_applications that are essential for the functioning of the operating_system or of the device and which cannot technically be offered on a standalone basis by third parties.

The gatekeeper shall allow and technically enable end_users to easily change default settings on the operating_system, virtual_assistant and web_browser of the gatekeeper that direct or steer end_users to products or services provided by the gatekeeper. That includes prompting end_users, at the moment of the end_users’ first use of an online_search_engine, virtual_assistant or web_browser of the gatekeeper listed in the designation decision pursuant to Article 3(9), to choose, from a list of the main available service providers, the online_search_engine, virtual_assistant or web_browser to which the operating_system of the gatekeeper directs or steers users by default, and the online_search_engine to which the virtual_assistant and the web_browser of the gatekeeper directs or steers users by default.

4.   The gatekeeper shall allow and technically enable the installation and effective use of third-party software_applications or software_application_stores using, or interoperating with, its operating_system and allow those software_applications or software_application_stores to be accessed by means other than the relevant core_platform_services of that gatekeeper. The gatekeeper shall, where applicable, not prevent the downloaded third-party software_applications or software_application_stores from prompting end_users to decide whether they want to set that downloaded software_application or software_application store as their default. The gatekeeper shall technically enable end_users who decide to set that downloaded software_application or software_application store as their default to carry out that change easily.

The gatekeeper shall not be prevented from taking, to the extent that they are strictly necessary and proportionate, measures to ensure that third-party software_applications or software_application_stores do not endanger the integrity of the hardware or operating_system provided by the gatekeeper, provided that such measures are duly justified by the gatekeeper.

Furthermore, the gatekeeper shall not be prevented from applying, to the extent that they are strictly necessary and proportionate, measures and settings other than default settings, enabling end_users to effectively protect security in relation to third-party software_applications or software_application_stores, provided that such measures and settings other than default settings are duly justified by the gatekeeper.

5.   The gatekeeper shall not treat more favourably, in ranking and related indexing and crawling, services and products offered by the gatekeeper itself than similar services or products of a third party. The gatekeeper shall apply transparent, fair and non-discriminatory conditions to such ranking.

6.   The gatekeeper shall not restrict technically or otherwise the ability of end_users to switch between, and subscribe to, different software_applications and services that are accessed using the core_platform_services of the gatekeeper, including as regards the choice of Internet access services for end_users.

7.   The gatekeeper shall allow providers of services and providers of hardware, free of charge, effective interoperability with, and access for the purposes of interoperability to, the same hardware and software features accessed or controlled via the operating_system or virtual_assistant listed in the designation decision pursuant to Article 3(9) as are available to services or hardware provided by the gatekeeper. Furthermore, the gatekeeper shall allow business_users and alternative providers of services provided together with, or in support of, core_platform_services, free of charge, effective interoperability with, and access for the purposes of interoperability to, the same operating_system, hardware or software features, regardless of whether those features are part of the operating_system, as are available to, or used by, that gatekeeper when providing such services.

The gatekeeper shall not be prevented from taking strictly necessary and proportionate measures to ensure that interoperability does not compromise the integrity of the operating_system, virtual_assistant, hardware or software features provided by the gatekeeper, provided that such measures are duly justified by the gatekeeper.

8.   The gatekeeper shall provide advertisers and publishers, as well as third parties authorised by advertisers and publishers, upon their request and free of charge, with access to the performance measuring tools of the gatekeeper and the data necessary for advertisers and publishers to carry out their own independent verification of the advertisements inventory, including aggregated and non-aggregated data. Such data shall be provided in a manner that enables advertisers and publishers to run their own verification and measurement tools to assess the performance of the core_platform_services provided for by the gatekeepers.

9.   The gatekeeper shall provide end_users and third parties authorised by an end_user, at their request and free of charge, with effective portability of data provided by the end_user or generated through the activity of the end_user in the context of the use of the relevant core_platform_service, including by providing, free of charge, tools to facilitate the effective exercise of such data portability, and including by the provision of continuous and real-time access to such data.

10.   The gatekeeper shall provide business_users and third parties authorised by a business_user, at their request, free of charge, with effective, high-quality, continuous and real-time access to, and use of, aggregated and non-aggregated data, including personal data, that is provided for or generated in the context of the use of the relevant core_platform_services or services provided together with, or in support of, the relevant core_platform_services by those business_users and the end_users engaging with the products or services provided by those business_users. With regard to personal data, the gatekeeper shall provide for such access to, and use of, personal data only where the data are directly connected with the use effectuated by the end_users in respect of the products or services offered by the relevant business_user through the relevant core_platform_service, and when the end_users opt in to such sharing by giving their consent.

11.   The gatekeeper shall provide to any third-party undertaking providing online_search_engines, at its request, with access on fair, reasonable and non-discriminatory terms to ranking, query, click and view data in relation to free and paid search generated by end_users on its online_search_engines. Any such query, click and view data that constitutes personal data shall be anonymised.

12.   The gatekeeper shall apply fair, reasonable, and non-discriminatory general conditions of access for business_users to its software_application_stores, online_search_engines and online_social_networking_services listed in the designation decision pursuant to Article 3(9).

For that purpose, the gatekeeper shall publish general conditions of access, including an alternative dispute settlement mechanism.

The Commission shall assess whether the published general conditions of access comply with this paragraph.

13.   The gatekeeper shall not have general conditions for terminating the provision of a core_platform_service that are disproportionate. The gatekeeper shall ensure that the conditions of termination can be exercised without undue difficulty.

Article 7

Obligation for gatekeepers on interoperability of number-independent_interpersonal_communications_services

1.   Where a gatekeeper provides number-independent_interpersonal_communications_services that are listed in the designation decision pursuant to Article 3(9), it shall make the basic functionalities of its number-independent_interpersonal_communications_services interoperable with the number-independent_interpersonal_communications_services of another provider offering or intending to offer such services in the Union, by providing the necessary technical interfaces or similar solutions that facilitate interoperability, upon request, and free of charge.

2.   The gatekeeper shall make at least the following basic functionalities referred to in paragraph 1 interoperable where the gatekeeper itself provides those functionalities to its own end_users:

(a)

following the listing in the designation decision pursuant to Article 3(9):

(i)

end-to-end text messaging between two individual end_users;

(ii)

sharing of images, voice messages, videos and other attached files in end to end communication between two individual end_users;

(b)

within 2 years from the designation:

(i)

end-to-end text messaging within groups of individual end_users;

(ii)

sharing of images, voice messages, videos and other attached files in end-to-end communication between a group chat and an individual end_user;

(c)

within 4 years from the designation:

(i)

end-to-end voice calls between two individual end_users;

(ii)

end-to-end video calls between two individual end_users;

(iii)

end-to-end voice calls between a group chat and an individual end_user;

(iv)

end-to-end video calls between a group chat and an individual end_user.

3.   The level of security, including the end-to-end encryption, where applicable, that the gatekeeper provides to its own end_users shall be preserved across the interoperable services.

4.   The gatekeeper shall publish a reference offer laying down the technical details and general terms and conditions of interoperability with its number-independent_interpersonal_communications_services, including the necessary details on the level of security and end-to-end encryption. The gatekeeper shall publish that reference offer within the period laid down in Article 3(10) and update it where necessary.

5.   Following the publication of the reference offer pursuant to paragraph 4, any provider of number-independent_interpersonal_communications_services offering or intending to offer such services in the Union may request interoperability with the number-independent_interpersonal_communications_services provided by the gatekeeper. Such a request may cover some or all of the basic functionalities listed in paragraph 2. The gatekeeper shall comply with any reasonable request for interoperability within 3 months after receiving that request by rendering the requested basic functionalities operational.

6.   The Commission may, exceptionally, upon a reasoned request by the gatekeeper, extend the time limits for compliance under paragraph 2 or 5 where the gatekeeper demonstrates that this is necessary to ensure effective interoperability and to maintain the necessary level of security, including end-to-end encryption, where applicable.

7.   The end_users of the number-independent_interpersonal_communications_services of the gatekeeper and of the requesting provider of number-independent_interpersonal_communications_services shall remain free to decide whether to make use of the interoperable basic functionalities that may be provided by the gatekeeper pursuant to paragraph 1.

8.   The gatekeeper shall collect and exchange with the provider of number-independent_interpersonal_communications_services that makes a request for interoperability only the personal data of end_users that is strictly necessary to provide effective interoperability. Any such collection and exchange of the personal data of end_users shall fully comply with Regulation (EU) 2016/679 and Directive 2002/58/EC.

9.   The gatekeeper shall not be prevented from taking measures to ensure that third-party providers of number-independent_interpersonal_communications_services requesting interoperability do not endanger the integrity, security and privacy of its services, provided that such measures are strictly necessary and proportionate and are duly justified by the gatekeeper.

Article 8

Compliance with obligations for gatekeepers

1.   The gatekeeper shall ensure and demonstrate compliance with the obligations laid down in Articles 5, 6 and 7 of this Regulation. The measures implemented by the gatekeeper to ensure compliance with those Articles shall be effective in achieving the objectives of this Regulation and of the relevant obligation. The gatekeeper shall ensure that the implementation of those measures complies with applicable law, in particular Regulation (EU) 2016/679, Directive 2002/58/EC, legislation on cyber security, consumer protection, product safety, as well as with the accessibility requirements.

2.   The Commission may, on its own initiative or at the request of a gatekeeper pursuant to paragraph 3 of this Article, open proceedings pursuant to Article 20.

The Commission may adopt an implementing act, specifying the measures that the gatekeeper concerned is to implement in order to effectively comply with the obligations laid down in Articles 6 and 7. That implementing act shall be adopted within 6 months from the opening of proceedings pursuant to Article 20 in accordance with the advisory procedure referred to in Article 50(2).

When opening proceedings on its own initiative for circumvention pursuant to Article 13, such measures may concern the obligations laid down in Articles 5, 6 and 7.

3.   A gatekeeper may request the Commission to engage in a process to determine whether the measures that that gatekeeper intends to implement or has implemented to ensure compliance with Articles 6 and 7 are effective in achieving the objective of the relevant obligation in the specific circumstances of the gatekeeper. The Commission shall have discretion in deciding whether to engage in such a process, respecting the principles of equal treatment, proportionality and good administration.

In its request, the gatekeeper shall provide a reasoned submission to explain the measures that it intends to implement or has implemented. The gatekeeper shall furthermore provide a non-confidential version of its reasoned submission that may be shared with third parties pursuant to paragraph 6.

4.   Paragraphs 2 and 3 of this Article are without prejudice to the powers of the Commission under Articles 29, 30 and 31.

5.   With a view of adopting the decision under paragraph 2, the Commission shall communicate its preliminary findings to the gatekeeper within 3 months from the opening of the proceedings under Article 20. In the preliminary findings, the Commission shall explain the measures that it is considering taking or that it considers the gatekeeper concerned should take in order to effectively address the preliminary findings.

6.   In order to effectively enable interested third parties to provide comments, the Commission shall, when communicating its preliminary findings to the gatekeeper pursuant to paragraph 5 or as soon as possible thereafter, publish a non-confidential summary of the case and the measures that it is considering taking or that it considers the gatekeeper concerned should take. The Commission shall specify a reasonable timeframe within which such comments are to be provided.

7.   In specifying the measures under paragraph 2, the Commission shall ensure that the measures are effective in achieving the objectives of this Regulation and the relevant obligation, and proportionate in the specific circumstances of the gatekeeper and the relevant service.

8.   For the purposes of specifying the obligations under Article 6(11) and (12), the Commission shall also assess whether the intended or implemented measures ensure that there is no remaining imbalance of rights and obligations on business_users and that the measures do not themselves confer an advantage on the gatekeeper which is disproportionate to the service provided by the gatekeeper to business_users.

9.   In respect of proceedings pursuant to paragraph 2, the Commission may, upon request or on its own initiative, decide to reopen them where:

(a)

there has been a material change in any of the facts on which the decision was based; or

(b)

the decision was based on incomplete, incorrect or misleading information; or

(c)

the measures as specified in the decision are not effective.

Article 16

Opening of a market investigation

1.   When the Commission intends to carry out a market investigation with a view to the possible adoption of decisions pursuant to Articles 17, 18 and 19 it shall adopt a decision opening a market investigation.

2.   Notwithstanding paragraph 1, the Commission may exercise its investigative powers under this Regulation before opening a market investigation pursuant to that paragraph.

3.   The decision referred to in paragraph 1 shall specify:

(a)

the date of opening of the market investigation;

(b)

the description of the issue to which the market investigation relates to;

(c)

the purpose of the market investigation.

4.   The Commission may reopen a market investigation that it has closed where:

(a)

there has been a material change in any of the facts on which a decision adopted pursuant to Article 17, 18 or 19 was based; or

(b)

the decision adopted pursuant to Article 17, 18 or 19 was based on incomplete, incorrect or misleading information.

5.   The Commission may ask one or more national competent authorities to assist it in its market investigation.

Article 25

Commitments

1.   If, during proceedings under Article 18, the gatekeeper concerned offers commitments for the relevant core_platform_services to ensure compliance with the obligations laid down in Articles 5, 6 and 7 the Commission may adopt an implementing act making those commitments binding on that gatekeeper and declare that there are no further grounds for action. That implementing act shall be adopted in accordance with the advisory procedure referred to in Article 50(2).

2.   The Commission may, upon request or on its own initiative, reopen by decision the relevant proceedings, where:

(a)

there has been a material change in any of the facts on which the decision was based;

(b)

the gatekeeper concerned acts contrary to its commitments;

(c)

the decision was based on incomplete, incorrect or misleading information provided by the parties;

(d)

the commitments are not effective.

3.   If the Commission considers that the commitments submitted by the gatekeeper concerned cannot ensure effective compliance with the obligations laid down in Articles 5, 6 and 7, it shall explain the reasons for not making those commitments binding in the decision concluding the relevant proceedings.

Article 36

Professional secrecy

1.   The information collected pursuant to this Regulation shall be used for the purposes of this Regulation.

2.   The information collected pursuant to Article 14 shall be used for the purposes of this Regulation, Regulation (EC) No 139/2004 and national merger rules.

3.   The information collected pursuant to Article 15 shall be used for the purposes of this Regulation and Regulation (EU) 2016/679.

4.   Without prejudice to the exchange and to the use of information provided for the purpose of use pursuant to Articles 38, 39, 41 and 43, the Commission, the competent authorities of the Member States, their officials, servants and other persons working under the supervision of those authorities and any natural or legal person, including auditors and experts appointed pursuant to Article 26(2), shall not disclose information acquired or exchanged by them pursuant to this Regulation and of the kind covered by the obligation of professional secrecy.

Article 38

Cooperation and coordination with national competent authorities enforcing competition rules

1.   The Commission and the national competent authorities of the Member States enforcing the rules referred to in Article 1(6) shall cooperate with each other and inform each other about their respective enforcement actions through the European Competition Network (ECN). They shall have the power to provide one another with any information regarding a matter of fact or of law, including confidential information. Where the competent authority is not a member of the ECN, the Commission shall make the necessary arrangements for cooperation and exchange of information on cases concerning the enforcement of this Regulation and the enforcement of cases referred to in Article 1(6) of such authorities. The Commission may lay down such arrangements in an implementing act as referred to in Article 46(1), point (l).

2.   Where a national competent authority of the Member States enforcing the rules referred to in Article 1(6) intends to launch an investigation on gatekeepers based on national laws referred to in Article 1(6), it shall inform the Commission in writing of the first formal investigative measure, before or immediately after the start of such measure. This information may also be made available to the national competent authorities enforcing the rules referred to in Article 1(6) of the other Member States.

3.   Where a national competent authority of the Member States enforcing the rules referred to in Article 1(6) intends to impose obligations on gatekeepers based on national laws referred to in Article 1(6), it shall, no later than 30 days before its adoption, communicate the draft measure to the Commission stating the reasons for the measure. In the case of interim measures, the national competent authority of the Member States enforcing the rules referred to in Article 1(6) shall communicate to the Commission the draft measures envisaged as soon as possible, and at the latest immediately after the adoption of such measures. This information may also be made available to the national competent authorities enforcing the rules referred to in Article 1(6) of the other Member States.

4.   The information mechanisms provided for in paragraphs 2 and 3 shall not apply to decisions envisaged pursuant to national merger rules.

5.   Information exchanged pursuant to paragraphs 1 to 3 of this Article shall only be exchanged and used for the purpose of coordination of the enforcement of this Regulation and the rules referred to in Article 1(6).

6.   The Commission may ask national competent authorities of the Member States enforcing the rules referred to in Article 1(6) to support any of its market investigations pursuant to this Regulation.

7.   Where it has the competence and investigative powers to do so under national law, a national competent authority of the Member States enforcing the rules referred to in Article 1(6) may, on its own initiative, conduct an investigation into a case of possible non-compliance with Articles 5, 6 and 7 of this Regulation on its territory. Before taking a first formal investigative measure, that authority shall inform the Commission in writing.

The opening of proceedings by the Commission pursuant to Article 20 shall relieve the national competent authorities of the Member States enforcing the rules referred to in Article 1(6) of the possibility to conduct such an investigation or end it where it is already ongoing. Those authorities shall report to the Commission on the findings of such investigation in order to support the Commission in its role as sole enforcer of this Regulation.

Article 54

Entry into force and application

This Regulation shall enter into force on the twentieth day following that of its publication in the Official Journal of the European Union.

It shall apply from 2 May 2023.

However, Article 3(6) and (7) and Articles 40, 46, 47, 48, 49 and 50 shall apply from 1 November 2022 and Article 42 and Article 43 shall apply from 25 June 2023.

Nevertheless, if the date of 25 June 2023 precedes the date of application referred to in the second paragraph of this Article, the application of Article 42 and Article 43 shall be postponed until the date of application referred to in the second paragraph of this Article.

This Regulation shall be binding in its entirety and directly applicable in all Member States.

Done at Strasbourg, 14 September 2022.

For the European Parliament

The President

R. METSOLA

For the Council

The President

M. BEK


(1)  OJ C 286, 16.7.2021, p. 64.

(2)  OJ C 440, 29.10.2021, p. 67.

(3)  Position of the European Parliament of 5 July 2022 (not yet published in the Official Journal) and decision of the Council of 18 July 2022.

(4)  Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC ( General Data Protection Regulation) (OJ L 119, 4.5.2016, p. 1).

(5)  Regulation (EU) 2019/1150 of the European Parliament and of the Council of 20 June 2019 on promoting fairness and transparency for business_users of online_intermediation_services (OJ L 186, 11.7.2019, p. 57).

(6)  Directive 2002/58/EC of the European Parliament and of the Council of 12 July 2002 concerning the processing of personal data and the protection of privacy in the electronic communications sector (OJ L 201, 31.7.2002, p. 37).

(7)  Directive 2005/29/EC of the European Parliament and of the Council of 11 May 2005 concerning unfair business-to-consumer commercial practices in the internal market and amending Council Directive 84/450/EEC, Directives 97/7/EC, 98/27/EC and 2002/65/EC of the European Parliament and of the Council and Regulation (EC) No 2006/2004 of the European Parliament and of the Council (‘Unfair Commercial Practices Directive’) (OJ L 149, 11.6.2005, p. 22).

(8)  Directive 2010/13/EU of the European Parliament and of the Council of 10 March 2010 on the coordination of certain provisions laid down by law, regulation or administrative action in Member States concerning the provision of audiovisual media services (Audiovisual Media Services Directive) (OJ L 95, 15.4.2010, p. 1).

(9)  Directive (EU) 2015/2366 of the European Parliament and of the Council of 25 November 2015 on payment_services in the internal market, amending Directives 2002/65/EC, 2009/110/EC and 2013/36/EU and Regulation (EU) No 1093/2010, and repealing Directive 2007/64/EC (OJ L 337, 23.12.2015, p. 35).

(10)  Directive (EU) 2019/790 of the European Parliament and of the Council of 17 April 2019 on copyright and related rights in the Digital Single Market and amending Directives 96/9/EC and 2001/29/EC (OJ L 130, 17.5.2019, p. 92).

(11)  Directive (EU) 2019/882 of the European Parliament and of the Council of 17 April 2019 on the accessibility requirements for products and services (OJ L 151, 7.6.2019, p. 70).

(12)  Council Directive 93/13/EEC of 5 April 1993 on unfair terms in consumer contracts (OJ L 95, 21.4.1993, p. 29).

(13)  Directive (EU) 2015/1535 of the European Parliament and of the Council of 9 September 2015 laying down a procedure for the provision of information in the field of technical regulations and of rules on Information Society services (OJ L 241, 17.9.2015, p. 1).

(14)  Directive (EU) 2018/1972 of the European Parliament and of the Council of 11 December 2018 establishing the European Electronic Communications Code (OJ L 321, 17.12.2018, p. 36).

(15)  Directive (EU) 2016/2102 of the European Parliament and of the Council of 26 October 2016 on the accessibility of the websites and mobile applications of public sector bodies (OJ L 327, 2.12.2016, p. 1).

(16)  Regulation (EU) No 182/2011 of the European Parliament and of the Council of 16 February 2011 laying down the rules and general principles concerning mechanisms for control by the Member States of the Commission's exercise of implementing powers (OJ L 55, 28.2.2011, p. 13).

(17)  Regulation (EU) 2018/1725 of the European Parliament and of the Council of 23 October 2018 on the protection of natural persons with regard to the processing of personal data by the Union institutions, bodies, offices and agencies and on the free movement of such data, and repealing Regulation (EC) No 45/2001 and Decision No 1247/2002/EC (OJ L 295, 21.11.2018, p. 39).

(18)  Council Regulation (EC) No 1/2003 of 16 December 2002 on the implementation of the rules on competition laid down in Articles 81 and 82 of the Treaty (OJ L 1, 4.1.2003, p. 1).

(19)  OJ L 123, 12.5.2016, p. 1.

(20)  Directive (EU) 2019/1937 of the European Parliament and of the Council of 23 October 2019 on the protection of persons who report breaches of Union law (OJ L 305, 26.11.2019, p. 17).

(21)  Directive (EU) 2020/1828 of the European Parliament and of the Council of 25 November 2020 on representative actions for the protection of the collective interests of consumers and repealing Directive 2009/22/EC (OJ L 409, 4.12.2020, p. 1).

(22)  OJ C 147, 26.4.2021, p. 4.

(23)  Council Regulation (EC) No 139/2004 of 20 January 2004 on the control of concentrations between undertakings (the EC Merger Regulation) (OJ L 24, 29.1.2004, p. 1).

(24)  Directive (EU) 2016/1148 of the European Parliament and of the Council of 6 July 2016 concerning measures for a high common level of security of network and information systems across the Union (OJ L 194, 19.7.2016, p. 1).


ANNEX

A.   ‘ General

1.

This Annex aims at specifying the methodology for identifying and calculating the ‘active end_users’ and the ‘active business_users’ for each core_platform_service listed in Article 2, point (2). It provides a reference to enable an undertaking to assess whether its core_platform_services meet the quantitative thresholds set out in Article 3(2), point (b) and would therefore be presumed to meet the requirement in Article 3(1), point (b). Such reference will therefore equally be of relevance to any broader assessment under Article 3(8). It is the responsibility of the undertaking to come to the best approximation possible in line with the common principles and specific methodology set out in this Annex. Nothing in this Annex precludes the Commission, within the time limits laid down in the relevant provisions of this Regulation, from requiring the undertaking providing core_platform_services to provide any information necessary to identify and calculate the ‘active end_users’ and the ‘active business_users’. Nothing in this Annex should constitute a legal basis for tracking users. The methodology contained in this Annex is also without prejudice to any of the obligations laid down in this Regulation, notably in Article 3(3) and (8) and Article 13(3). In particular, the required compliance with Article 13(3) also means identifying and calculating ‘active end_users’ and ‘active business_users’ based either on a precise measurement or on the best approximation available, in line with the actual identification and calculation capacities that the undertaking providing core_platform_services possesses at the relevant point in time. Those measurements or the best approximation available shall be consistent with, and include, those reported under Article 15.

2.

Article 2, points (20) and (21) set out the definitions of ‘ end_user’ and ‘ business_user’, which are common to all core_platform_services.

3.

In order to identify and calculate the number of ‘active end_users’ and ‘active business_users’, this Annex refers to the concept of ‘unique users’. The concept of ‘unique users’ encompasses ‘active end_users’ and ‘active business_users’ counted only once, for the relevant core_platform_service, over the course of a specified time period (i.e. month in case of ‘active end_users’ and year in case of ‘active business_users’), no matter how many times they engaged with the relevant core_platform_service over that period. This is without prejudice to the fact that the same natural or legal person can simultaneously constitute an ‘active end_user’ or an ‘active business_user’ for different core_platform_services.

B.   ‘Active end_users’

1.

The number of ‘unique users’ as regards ‘active end_users’ shall be identified according to the most accurate metric reported by the undertaking providing any of the core_platform_services, specifically:

a.

It is considered that collecting data about the use of core_platform_services from signed-in or logged-in environments would prima facie present the lowest risk of duplication, for example in relation to user behaviour across devices or platforms. Hence, the undertaking shall submit aggregate anonymized data on the number of unique end_users per respective core_platform_service based on signed-in or logged-in environments, if such data exists.

b.

In the case of core_platform_services which are also accessed by end_users outside signed-in or logged-in environments, the undertaking shall additionally submit aggregate anonymized data on the number of unique end_users of the respective core_platform_service based on an alternate metric capturing also end_users outside signed-in or logged-in environments, such as internet protocol addresses, cookie identifiers or other identifiers such as radio frequency identification tags, provided that those addresses or identifiers are objectively necessary for the provision of the core_platform_services.

2.

The number of ‘monthly active end_users’ is based on the average number of monthly active end_users throughout the largest part of the financial year. The notion ‘the largest part of the financial year’ is intended to allow an undertaking providing core_platform_services to discount outlier figures in a given year. Outlier figures inherently mean figures that fall significantly outside the normal and foreseeable figures. An unforeseen peak or drop in user engagement that occurred during a single month of the financial year is an example of what could constitute such outlier figures. Figures related to annually recurring occurrences, such as annual sales promotions, are not outlier figures.

C.   ‘Active business_users’

The number of ‘unique users’ as regards ‘active business_users’ is to be determined, where applicable, at the account level with each distinct business account associated with the use of a core_platform_service provided by the undertaking constituting one unique business_user of that respective core_platform_service. If the notion of ‘business account’ does not apply to a given core_platform_service, the relevant undertaking providing core_platform_services shall determine the number of unique business_users by referring to the relevant undertaking.

D.   ‘ Submission_of_information

1.

The undertaking submitting to the Commission pursuant to Article 3(3) information concerning the number of active end_users and active business_users per core_platform_service shall be responsible for ensuring the completeness and accuracy of that information. In that regard:

a.

The undertaking shall be responsible for submitting data for a respective core_platform_service that avoids under-counting and over-counting the number of active end_users and active business_users (for example, where users access the core_platform_services across different platforms or devices).

b.

The undertaking shall be responsible for providing precise and succinct explanations about the methodology used to arrive at the information and for any risk of under-counting or over-counting of the number of active end_users and active business_users for a respective core_platform_service and for the solutions adopted to address that risk.

c.

The undertaking shall provide data that is based on an alternative metric when the Commission has concerns about the accuracy of data provided by the undertaking providing core_platform_services.

2.

For the purpose of calculating the number of ‘active end_users’ and ‘active business_users’:

a.

The undertaking providing core_platform_service(s) shall not identify core_platform_services that belong to the same category of core_platform_services pursuant to Article 2, point (2) as distinct mainly on the basis that they are provided using different domain names, whether country code top-level domains (ccTLDs) or generic top-level domains (gTLDs), or any geographic attributes.

b.

The undertaking providing core_platform_service(s) shall consider as distinct core_platform_services those core_platform_services, which are used for different purposes by either their end_users or their business_users, or both, even if their end_users or business_users may be the same and even if they belong to the same category of core_platform_services pursuant to Article 2, point (2).

c.

The undertaking providing core_platform_service(s) shall consider as distinct core_platform_services those services which the relevant undertaking offers in an integrated way, but which:

(i)

do not belong to the same category of core_platform_services pursuant to Article 2, point (2); or

(ii)

are used for different purposes by either their end_users or their business_users, or both, even if their end_users and business_users may be the same and even if they belong to the same category of core_platform_services pursuant to Article 2, point (2).

E.   ‘ Specific_definitions

The table below sets out specific definitions of ‘active end_users’ and ‘active business_users’ for each core_platform_service.

Core platform services

Active end_users

Active business_users

Online intermediation services

Number of unique end_users who engaged with the online intermediation service at least once in the month for example through actively logging-in, making a query, clicking or scrolling or concluded a transaction through the online intermediation service at least once in the month.

Number of unique business_users who had at least one item listed in the online intermediation service during the whole year or concluded a transaction enabled by the online intermediation service during the year.

Online search engines

Number of unique end_users who engaged with the online_search_engine at least once in the month, for example through making a query.

Number of unique business_users with business websites (i.e. website used in commercial or professional capacity) indexed by or part of the index of the online_search_engine during the year.

Online social networking services

Number of unique end_users who engaged with the online_social_networking_service at least once in the month, for example through actively logging-in, opening a page, scrolling, clicking, liking, making a query, posting or commenting.

Number of unique business_users who have a business listing or business account in the online_social_networking_service and have engaged in any way with the service at least once during the year, for example through actively logging-in, opening a page, scrolling, clicking, liking, making a query, posting, commenting or using its tools for businesses.

Video-sharing platform services

Number of unique end_users who engaged with the video-sharing_platform_service at least once in the month, for example through playing a segment of audiovisual content, making a query or uploading a piece of audiovisual content, notably including user-generated videos.

Number of unique business_users who provided at least one piece of audiovisual content uploaded or played on the video-sharing_platform_service during the year.

Number-independent interpersonal communication services

Number of unique end_users who initiated or participated in any way in a communication through the number-independent interpersonal communication service at least once in the month.

Number of unique business_users who used a business account or otherwise initiated or participated in any way in a communication through the number-independent interpersonal communication service to communicate directly with an end_user at least once during the year.

Operating systems

Number of unique end_users who utilised a device with the operating_system, which has been activated, updated or used at least once in the month.

Number of unique developers who published, updated or offered at least one software_application or software program using the programming language or any software development tools of, or running in any way on, the operating_system during the year.

Virtual assistant

Number of unique end_users who engaged with the virtual_assistant in any way at least once in the month, such as for example through activating it, asking a question, accessing a service through a command or controlling a smart home device.

Number of unique developers who offered at least one virtual_assistant software_application or a functionality to make an existing software_application accessible through the virtual_assistant during the year.

Web browsers

Number of unique end_users who engaged with the web_browser at least once in the month, for example through inserting a query or website address in the URL line of the web_browser.

Number of unique business_users whose business websites (i.e. website used in commercial or professional capacity) have been accessed via the web_browser at least once during the year or who offered a plug-in, extension or add-ons used on the web_browser during the year.

Cloud computing services

Number of unique end_users who engaged with any cloud_computing_services from the relevant provider of cloud_computing_services at least once in the month, in return for any type of remuneration, regardless of whether this remuneration occurs in the same month.

Number of unique business_users who provided any cloud_computing_services hosted in the cloud infrastructure of the relevant provider of cloud_computing_services during the year.

Online advertising services

For proprietary sales of advertising space:

Number of unique end_users who were exposed to an advertisement impression at least once in the month.

For advertising intermediation services (including advertising networks, advertising exchanges and any other advertising intermediation services):

Number of unique end_users who were exposed to an advertisement impression which triggered the advertising intermediation service at least once in the month.

For proprietary sales of advertising space:

Number of unique advertisers who had at least one advertisement impression displayed during the year.

For advertising intermediation services (including advertising networks, advertising exchanges and any other advertising intermediation services):

Number of unique business_users (including advertisers, publishers or other intermediators) who interacted via or were served by the advertising intermediation service during the year.



whereas









keyboard_arrow_down