Jump to content
Main menu
Main menu
move to sidebar
hide
Navigation
Main page
Categories
Random page
Top Contributors
Recent changes
Contribute
Create a page
How to help
Wiki policy
Adapt videos to articles
Articles in need of work
Help
Frequently asked questions
Join the discord!
Help about MediaWiki
Consumer_Action_Taskforce
Search
Search
Appearance
Create account
Log in
Personal tools
Create account
Log in
Pages for logged out editors
learn more
Contributions
Talk
Editing
General Data Protection Regulation
(section)
Page
Discussion
English
Read
Edit
Edit source
View history
Tools
Tools
move to sidebar
hide
Actions
Read
Edit
Edit source
View history
Purge cache
General
What links here
Related changes
Special pages
Page information
Cargo data
Appearance
move to sidebar
hide
Warning:
You are not logged in. Your IP address will be publicly visible if you make any edits. If you
log in
or
create an account
, your edits will be attributed to your username, along with other benefits.
Anti-spam check. Do
not
fill this in!
==Summary== ===Chapter 2: Principles=== Chapter 2 of the GDPR addresses personal data, legal ways to process it, and consent of the user.<ref>[https://gdpr-info.eu/chapter-2/ "Chapter 2: Principles"] - gdpr-info.eu - 25 May 2018</ref> ====Article 5: Principles relating to processing of personal data==== ''Main wiki: [https://gdprhub.eu/index.php?title=Article_5_GDPR Article 5 GDPR]'' Personal data processing under GDPR mandates that data must be handled lawfully, fairly, and transparently; collected for specific legitimate purposes; kept accurate and up-to-date; minimized to only what's necessary; stored only as long as required; and protected with appropriate security measures. ====Article 7: Conditions for consent==== ''Main wiki: [https://gdprhub.eu/index.php?title=Article_7_GDPR Article 7 GDPR]'' When applicable, data subjects must consent to the processing of his or her personal data. Written requests for consent must use clear and plain language. Any portion of a written request violating the GDPR is not considered binding. The data subject may also withdraw his or consent at any time and it should "be as easy to withdraw as to give consent." Consent also must be freely given as defined in Recital 43. Consent is not considered freely given when a power imbalance exists between the data collected and the data subject, when consent for different data operations is improperly bundled together, or when access to services is made conditional on consenting to unnecessary data collection. ===Chapter 3: Rights of the data subject=== Chapter 3 of the GDPR covers transparency, information and access to personal data, the right to change, erase, or restrict processing of personal data, and the right to object.<ref>[https://gdpr-info.eu/chapter-3/ "Chapter 3: Rights of the data subject"] - gdpr-info.eu - 25 May 2018</ref> ====Article 17: Right to erasure (‘right to be forgotten’)==== ''Main wiki: [https://gdprhub.eu/index.php?title=Article_17_GDPR Article 17 GDPR]'' Data subjects have the right to request erasure of their personal data by the data processor and the data processor is required to erase said data in a timely manner. This includes unnecessarily stored data, unlawfully processed data, and publically availabe information. This article does not cover free of expression and information, public interest, archiving purposes, or legally-relevant information. ====Article 21: Right to object==== ''Main wiki: [https://gdprhub.eu/index.php?title=Article_21_GDPR Article 21 GDPR]'' Data subjects have the right to object to processing of their personal data in several key contexts, including when processing is based on public interest or legitimate interests grounds, for direct marketing purposes, or for research purposes - and in the case of direct marketing, this objection must be honored without exception. When such an objection is made, the controller must cease processing unless they can demonstrate compelling legitimate grounds that override the data subject's rights and freedoms, with special provisions requiring that this right to object must be explicitly communicated to data subjects and made easily accessible, particularly in digital contexts. ====Article 22: Automated individual decision-making, including profiling==== ''Main wiki: [https://gdprhub.eu/index.php?title=Article_22_GDPR Article 22 GDPR]'' Under Article 22, individuals have the right to not be subject to decisions based solely on automated processing or profiling that have legal or similarly significant effects, with three key exceptions: when the automated decision is necessary for a contract, authorized by law, or based on explicit consent. When automated decisions are made under contractual necessity or explicit consent, the data controller must implement safeguards including human intervention options, allowing individuals to express their views and contest decisions. Automated decisions cannot be based on special categories of personal data (such as race, health data, or political opinions) unless specific conditions are met and appropriate safeguards are in place. === Chapter 4: Controller and processor === Chapter 4 of the GDPR covers general obligations of controllers and processors of data, their security, impact assessments and responsibility.<ref>[https://gdpr-info.eu/chapter-4/ "Chapter 4: Controller and processor"] - gdpr-info.eu - 25 May 2018</ref> ==== Article 28: Processor ==== ''Main wiki: [https://gdprhub.eu/index.php?title=Article_28_GDPR Article 28 GDPR]'' Outsourcing data processing to service providers is no excuse not to comply with GDPR, it is still up to the controller to ensure that the GDPR is complied with.
Summary:
Please note that all contributions to Consumer_Action_Taskforce are considered to be released under the Creative Commons Attribution-ShareAlike 4.0 International (see
Consumer Action Taskforce:Copyrights
for details). If you do not want your writing to be edited mercilessly and redistributed at will, then do not submit it here.
You are also promising us that you wrote this yourself, or copied it from a public domain or similar free resource.
Do not submit copyrighted work without permission!
To protect the wiki against automated edit spam, we kindly ask you to solve the following hCaptcha:
Cancel
Editing help
(opens in new window)