GDPR
General Data Protection Regulation (GDPR)
The new European Union data protection law is designed to give individuals greater control over their personal data and imposes new obligations on organizations that collect, manage, or analyze such data, including organizations outside the EU.
Personal privacy
Natural persons have the following rights:
- To access and export their personal data
- To delete their personal data at any time
- To object to the processing of their personal data
- To correct errors and mistakes in their personal data
Checks and notifications
Companies and organizations must:
- They must protect the personal data they hold by taking appropriate security measures
- To notify the competent authorities of personal data breaches
- To obtain consent for the collection and processing of personal data
- They must keep records that provide detailed information about data processing activities
Transparency
Companies and organizations must implement policies according to which:
- They will provide clear notification about data collection
- They will describe the purpose and cases of personal data processing
- They will define data retention and deletion policies
- The principle of 'only as much data as necessary' will be followed