General Data Protection Regulation: Difference between revisions

normalization
Applied modification ruleset: References normalization
 
(6 intermediate revisions by one other user not shown)
Line 1: Line 1:
{{Norm|
| norm_title = General Data Protection Regulation
| alternative_name = GDPR
| norm_type = Regulation
| issuing_body = European Parliament
| jurisdiction_level = Regional
| country =
| status = Active
| official_text = https://eur-lex.europa.eu/eli/reg/2016/679
| related_norm = ePrivacy Directive 2002/58/EC; Data Protection Directive 95/46/EC; Directive (EU) 2016/680
| parent_framework = EU Data Protection Framework
| language =
| alternative_title = GDPR; Regulation (EU) 2016/679
| scope_geo = Regional
| norm_status = Active
}}
The '''General Data Protection Regulation (GDPR)''' or '''Regulation (EU) 2016/679'''<ref>[http://eur-lex.europa.eu/eli/reg/2016/679/oj Regulation (][[EU]]<span>) 2016/679 of the European Parliament and of the Council</span> 27 April 2016</ref> is a regulation designed to modernize and harmonize the data protection laws across the European Union (EU), giving citizens and residents of the EU more control of their data and providing a more consistent regulatory framework for businesses.<ref>[https://www.infolawgroup.com/2016/05/articles/gdpr/gdpr-getting-ready-for-the-new-eu-general-data-protection-regulation/ GDPR: Getting Ready for the New EU General Data Protection Regulation] Accessed on 8 February 2018</ref> This new EU data protection framework will replace the Data Protection Directive, or '''Directive 95/46/EC''' of 1995.  Enforcement for the GDPR goes into effect on 25 May 2018.<ref>[http://ec.europa.eu/justice/data-protection/reform/index_en.htm Reform of EU data protection rules]. Retrieved 27 Jun 2017.
The '''General Data Protection Regulation (GDPR)''' or '''Regulation (EU) 2016/679'''<ref>[http://eur-lex.europa.eu/eli/reg/2016/679/oj Regulation (][[EU]]<span>) 2016/679 of the European Parliament and of the Council</span> 27 April 2016</ref> is a regulation designed to modernize and harmonize the data protection laws across the European Union (EU), giving citizens and residents of the EU more control of their data and providing a more consistent regulatory framework for businesses.<ref>[https://www.infolawgroup.com/2016/05/articles/gdpr/gdpr-getting-ready-for-the-new-eu-general-data-protection-regulation/ GDPR: Getting Ready for the New EU General Data Protection Regulation] Accessed on 8 February 2018</ref> This new EU data protection framework will replace the Data Protection Directive, or '''Directive 95/46/EC''' of 1995.  Enforcement for the GDPR goes into effect on 25 May 2018.<ref>[http://ec.europa.eu/justice/data-protection/reform/index_en.htm Reform of EU data protection rules]. Retrieved 27 Jun 2017.
</ref>  
</ref>  
[[File:GDPRTimeline.png|border|300px|right]]
 
The GDPR places specific legal obligations on 'controllers' and 'processors', those who acts as intermediaries between the user/consumer and themselves, the government or any other actor. The controller determines how and why data is processed and processors act on the controller's behalf. Processors maintain data records and are held responsible in case of a breach.
The GDPR places specific legal obligations on 'controllers' and 'processors', those who acts as intermediaries between the user/consumer and themselves, the government or any other actor. The controller determines how and why data is processed and processors act on the controller's behalf. Processors maintain data records and are held responsible in case of a breach.


With the update on existing legislation, the GDPR is more precise and inclusive of what constitutes private information than its predecessor. Personal data, that is anything that can identify a user, including an [[IP Address|IP address]] is included, as well as 'sensitive personal data' which may include genetic and biomedical data.
With the update on existing legislation, the GDPR is more precise and inclusive of what constitutes private information than its predecessor. Personal data, that is anything that can identify a user, including an [[IP Address|IP address]] is included, as well as 'sensitive personal data' which may include genetic and biomedical data.
[[File:GDPRTimeline.png|border|300px|right]]


==Applicability and Scope==
==Applicability and Scope==
Line 41: Line 60:
== References ==
== References ==
{{reflist}}
{{reflist}}
[[Category:Data Protection Regulation]]
[[Category:Data Protection Regulation]]
[[Category:Legislation]]
[[Category:Legislation]]