Il Comitato dei Garanti europei (EDPB – European Data Protection Board) ha approvato il 25 maggio 2018 le Linee Guida relative all’applicazione del GDPR già emanate dal Gruppo dei Garanti europei (WP 29 – Working Party art. 29). L’EDPB subentra al WP 29 nel ruolo di organismo indipendente che contribuisce alla corretta applicazione delle regole sulla protezione dei dati in Europa e che promuove la cooperazione tra le autorità di controllo dei diversi stati membri.
Clicca qui per consultare l’endorsement (pdf in inglese).
L’EDPB, approvandole, ha fatto proprie le seguenti Linee Guida:
- Guidelines on consent under Regulation 2016/679, WP259 rev.01
- Guidelines on transparency under Regulation 2016/679, WP260 rev.01
- Automated individual decision-making and profiling Guidelines on Automated individual decisionmaking and Profiling for the purposes of Regulation 2016/679, WP251rev.01
- Personal data breach notification Guidelines on Personal data breach notification under Regulation 2016/679, WP250 rev.01
- The right to data portability Guidelines on the right to data portability under Regulation 2016/679, WP242 rev.01
- Data protection impact assessment Guidelines on Data Protection Impact Assessment (DPIA) and determining whether processing is “likely to result in a high risk” for the purposes of Regulation 2016/679, WP248 rev.01
- Data protection officers Guidelines on Data Protection Officers (‘DPO’), WP243 rev.01
- Lead supervisory authority Guidelines for identifying a controller or processor’s lead supervisory authority, WP244 rev.01
- Position Paper on the derogations from the obligation to maintain records of processing activities pursuant to Article 30(5) GDPR
- Working Document Setting Forth a Co-Operation Procedure for the approval of “Binding Corporate Rules” for controllers and processors under the GDPR, WP 263 rev.01
- Recommendation on the Standard Application for Approval of Controller Binding Corporate Rules for the Transfer of Personal Data, WP 264
- Recommendation on the Standard Application form for Approval of Processor Binding Corporate Rules for the Transfer of Personal Data, WP 265
- Working Document setting up a table with the elements and principles to be found in Binding Corporate Rules, WP 256 rev.01
- Working Document setting up a table with the elements and principles to be found in Processor Binding Corporate Rules, WP 257 rev.01
- Adequacy Referential, WP 254 rev.01
- Guidelines on the application and setting of administrative fines for the purposes of the Regulation 2016/679, WP 253