GDPR

Knowledge Base | GDPR | What is GDPR compliance?

What is GDPR compliance?

GDPR compliance means meeting the General Data Protection Regulation’s requirements when processing personal data and being able to demonstrate that those requirements are met. It involves establishing a lawful basis, collecting only necessary information, keeping it accurate, limiting retention and applying appropriate security measures in line with the GDPR’s data protection principles.

In practice, organisations must explain their data practices through clear privacy information, such as a privacy policy, handle individuals’ rights requests and put appropriate arrangements in place with service providers processing personal data on their behalf.

For websites, cookie consent management helps collect and record visitors’ choices where consent is required under applicable GDPR and ePrivacy rules. These controls form part of an ongoing compliance process covering the organisation’s wider data handling activities.