What is GDPR and what does it mean for consumers?

As Europe prepares to make way for the new General Data Protection Regulation (GDPR) next week, how will it actually impact consumers?

Minister of State for Trade, Employment, Business, EU Digital Single Market and Data Protection, Pat Breen TD joins Spearline Risk & Compliance Managing Director Ciara Lucy on the official launch of Spearline’s new GDPR operational compliance software solution Spearline Data Protection.

- What is GDPR?

Coming into force on May 25, the General Data Protection Regulation has been designed to give everyday consumers a greater say on how, and if, their personal data is used.

The EU-wide law will involve new powers that require firms to get clear consent from users before taking their data and detail the exact purpose it will be used for.

- What is "personal data"?

This is any information that could be used to identify an individual online, including names, bank details, posts on Facebook or other social networking sites, images and medical information.

Under the new regulations, users will have the right to know what exact details a company holds about them - as well as requesting the information is deleted if desired.

- Am I likely to be affected?

Yes. Whether you own a business, run a charity, or have signed up to newsletters via social media or online shopping websites, the GDPR is likely to impact us all.

The Act will give individuals easier access to the information that organisations hold about them - free of charge.

Currently, there's a €11.45 fee for a Subject Access Request (SAR), which businesses and public bodies can charge in order to release any personal information.

However, the GDPR means this will be scrapped and requests for personal information can be made free-of-charge and must be released within one month.

- What happens if I ignore it?

Everyday users have to do very little to comply with GDPR - it's more targeted at big online businesses.

Many people will have already noticed emails from organisations asking whether they still want to be on the receiving end of their mailing list and other information.

If you don't reply stating yes, many companies will assume you don't and remove you from their database.

- What are the punishments?

Businesses that fail to comply with the GDPR could face big penalties, including a fine equivalent to 2% of annual global turnover.

Fines can even reach up to €20m for bigger companies who make significant errors.

If a business has a security breach, then they have to notify the Information Commissioner's Office within 72 hours.

-PA


More in this Section

House builds at ‘incredibly low levels’

ESB warned on staff moves

BoI shares in ‘key’ investor day in June

New data law means ‘ongoing’ work


Today's Stories

Jury orders Samsung to pay $539m to Apple

Highlighting five ways to boost the Cork economy

World economy has survived a speed bump

Lifestyle

New father’s life ‘changed forever’ after he was run over by surgeon

The biggest cancer killer will take your breath away

Hopefully she had an idea...

Power of the press: Meryl Streep and Tom Hanks discuss 'The Post'

More From The Irish Examiner