Glossary · Legal

General Data Protection Regulation

Legal

Adopted in 2016 and applicable since May 2018, the GDPR is a European Union regulation that seeks to give people greater control over their personal data and homogenize data protection laws in all Member States.

Adopted in 2016 and applicable since May 2018, the GDPR is a European Union regulation that seeks to give people greater control over their personal data and homogenize data protection laws in all Member States. It introduces key principles such as transparency, purpose limitation, data minimization and clear and affirmative consent.

It also establishes important rights for citizens, such as the right of access, rectification, portability and oblivion. Organizations that process data of EU citizens must comply with this regulation, regardless of their geographical location, which has led to a global reconsideration of data management practices.

Related terms Intellectual property Intellectual property is a set of legal rights that protect creations of the mind, such as inventions, literary and artistic works, designs, symbols, names and images used in commerce. Multi-factor Authentication (MFA) Multi-factor Authentication (MFA) is a security mechanism that requires users to verify their identity through two or more independent factors before accessing a system, application or digital service. Network neutrality Net neutrality is a fundamental principle of the Internet that ensures that all users have access to the same information and services, regardless of their location, Internet service provider, or device type. Organic Data Protection Law This law is a Spanish regulation that reinforces and adapts national legislation to the framework of the GDPR of the European Union.