Toda la legislación
Data Protection & Privacy Law
c. 12
Data Protection Act 2018
Ver en legislation.gov.ukResumen
The Data Protection Act 2018 supplements the UK GDPR and provides the domestic framework for data protection in the UK. It sets out rules for processing personal data, establishes the role of the Information Commissioner, and provides for enforcement and penalties.
Puntos clave
- Supplements and tailors the UK GDPR for the UK context
- Provides exemptions from certain data subject rights for purposes including national security, crime prevention, and journalism
- Establishes the Information Commissioner's Office (ICO) as the independent supervisory authority
- ICO can impose fines of up to £17.5 million or 4% of annual worldwide turnover
- Provides for data protection impact assessments for high-risk processing
- Special category data (health, race, religion, etc.) requires additional safeguards
- Creates criminal offences for unlawfully obtaining personal data
Partes y secciones
Historial de enmiendas
2020 — Data Protection, Privacy and Electronic Communications (Amendments etc) (EU Exit) Regulations 2019
Created the UK GDPR by adapting the EU GDPR for the UK post-Brexit.