Data subject rights under GDPR.
The European Union’s General Data Protection Regulation (GDPR) sets out a number of data subject rights which give individuals more control and protection over their personal data. These rights are designed to ensure that organizations respect the privacy of individuals when processing their data.
Data subject rights are a key part of the GDPR and must be complied with by all organizations processing personal data. The rights allow individuals to access and control their data, and give them greater control over how it is used.
The most important data subject rights are as follows:
Right to be informed: Individuals have the right to be informed about how their data is being used. This includes information about the purposes for which the data is being processed, and the individuals’ rights in relation to their data.
Right of access: Individuals have the right to access their data, and to receive a copy of the data that is being processed. This includes details about the purpose for which the data is being processed, and who the data is being shared with.
Right to rectification: Individuals have the right to have their data corrected if it is inaccurate or incomplete.
Right to erasure: Individuals have the right to have their data erased, or “the right to be forgotten”. This applies in certain circumstances, such as when the data is no longer necessary for the purpose for which it was originally collected.
Right to restriction of processing: Individuals have the right to restrict the processing of their data in certain circumstances, such as when they have contested the accuracy of the data.
Right to data portability: Individuals have the right to receive their data in a structured, commonly used and machine-readable format, and to transfer it to another controller.
Right to object: Individuals have the right to object to the processing of their data in certain circumstances, such as for direct marketing purposes.
These data subject rights are vital for individuals to ensure that their data is being used responsibly and securely. Organizations must ensure that they are compliant with the GDPR and are respecting the rights of individuals when handling their data.