Please enable JavaScript.
Coggle requires JavaScript to display documents.
6 -DATA PROCESSING PRINCIPLES GDPR ART.5 (art. 6 LAWFULNESS - processing…
6 -
DATA PROCESSING PRINCIPLES
GDPR ART.5
art. 6
LAWFULNESS
-
processing only with legal ground
(it refers to all applicable laws)
contract
performance (DS party)
legal obligation
of controller
consent
vital interest of individuals
public
interest
legitimate interest
of controller or 3rd party
FAIRNESS
unless
processing is permitted by law
subject must be
aware
of the processing
assessment of the processing
impact
on the data subject
(e.g. differential pricing)
TRANSPARENCY
duty of informing the data subject
clear concise and easy to understand
information to the subject
art. 5(1)b
PURPOSE LIMITATION
processing for specified, explicit and legitimate interest
unless
the further processing
COMPATIBILITY
link
btw initial and further purposes
context of collection and
expectations
of subject
nature
of personal data
consequences
of the
intended processing
existence of
safeguards
art. 5(1)c
DATA MINIMIZATION
- only processing data
Necessary
to attain the purpose
Adequate
, proportionate
for the purpose
ACCURACY
and keeping data up to date
art. 5(1)3 -
STORAGE LIMITATION
- storing data in a form which allows identification for no longer than is necessary to the
purposes
or is established by
statutory data retention rules
storing for
longer
: in case of
archiving
data for historical, statistical, scientific, public interest reasons
indefinitely
: anonymised data
art. 5(1)f -
INTEGRITY/CONFIDENTIALITY
security
using
tech and organisational measures
to protect data vs unlawful processing, loss, damage