SecFrame Explorer
controls.intelligence
SearchPricing
AI lookups:3/3left
3/3
Sign in
FrameworksGDPRChapter 2: Principles
// Level 3 · Controls

Chapter 2: Principles

Principles

Art. 5High

Principles relating to processing of personal data

Lawfulness, fairness, transparency; purpose limitation; data minimisation; accuracy; storage limitation; integrity & confidentiality; accountability.

Art. 6High

Lawfulness of processing

Processing is lawful only with at least one legal basis: consent, contract, legal obligation, vital interests, public task, or legitimate interests.

Art. 7High

Conditions for consent

Consent must be freely given, specific, informed, unambiguous; demonstrable; withdrawable as easily as given.

Art. 8Medium

Conditions applicable to child's consent for information society services

Children under 16 (or as low as 13 per Member State) require parental consent for online services.

Art. 9High

Processing of special categories of personal data

Prohibits processing of sensitive data (health, biometrics, race, religion, etc.) absent specific exceptions.

Art. 10Medium

Processing of personal data relating to criminal convictions and offences

Such processing only under official authority or specific legal authorisation.

Art. 11Medium

Processing which does not require identification

Controllers not obliged to maintain identifying information solely to comply with GDPR.

// SecFrame Explorer — security frameworks, decoded
TermsPricingRefundsPrivacy·Powered by arnav.au