General Data Protection Regulation GDPR
99 articles, 7 principles. The EU's data protection law. Effective May 2018.
▸ Key points
What you need to know.
- 7 principles: lawfulness, fairness, transparency, purpose limitation, data minimisation, accuracy, storage limitation, integrity + confidentiality, accountability
- 8 data subject rights: access, rectification, erasure, restrict processing, data portability, object, automated decision-making, withdraw consent
- DPO required for large-scale processing
- DPIA required for high-risk processing
- 72-hour breach notification