GDPR
Data
Protection
Principles
Lawfulness,
Fairness &
1
Transparency
Explanation Example
You must have a valid legal Taking consent, having legitimate
reason for processing personal interest, etc. for processing of
data. personal data
You must make it clear exactly Data will be used for providing
how you are going to use their better user experience to the
data. customers.
You must obtain it without Not misleading any individual
deceiving the person whose regarding processing of their
data it is. data.
Purpose 2
Limitation
Explanation Example
Collecting home address details
You must only use personal data
and phone number to deliver the
for the reason (or reasons) you
product at home. The same
have told the person you are
information cannot be used for
using it for.
other purposes.
Data 3
Minimisation
Explanation Example
The purpose of collecting
You must only ask for the biometric data as part of a
minimum amount of personal fingerprint check at the entrance
data necessary from the of a building is to prevent
person. unauthorised persons from
entering.
Accuracy
4
Explanation Example
You must ensure that any Setting up checks and balances
personal data you hold is to correct, update, or erase
accurate and where necessary, incorrect or incomplete data that
up-to-date. comes in
Storage 5
Limitation
Explanation Example
You must not keep personal To have in place data retention
data for longer than you need it period in place, and to anonymise
for. the data not being used.
Integrity & 6
Confidentiality
Explanation Example
You must keep personal data
This takes planning and proactive
safe so that it doesn’t get
diligence, like conducting Data
accidentally deleted or
Processing Impact Assessment,
changed, or seen by someone
privacy by design etc.
who is not allowed to see it.
Accountability 7
Explanation Example
You must have appropriate
You must be able to evidence
measures and records in place as
your accountability by showing
proof of your compliance with the
how you take responsibility for
data processing principles, like
what you do with people's data.
Records of Processing Activities.
DID YOU LIKE OUR DOCUMENT
AND DO YOU NEED MORE
CHECKLISTS | WHITEPAPERS
TEMPLATES | VIDEOS
FOLLOW US ON
SECURITY & PRIVACY
MADE EASY