SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

EU GDPR

  Quote
Guest
Guest user Created:   Aug 29, 2019 Last commented:   Aug 29, 2019

EU GDPR

Dear Ladies and Gentlemen, my client wants an Android app in which personal data is stored. These data can not leave the app. Now the customer wants a processing contract from me.
0 0

Assign topic to the user

EU GDPR DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

EU GDPR DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Andrei Hanganu Aug 29, 2019

1. Can you give me some info sources for the formulation of such a contract, if I do not have the personal names?

Answer:

Personal Data is any information which is related to an identified or identifiable natural person. For example, the telephone, credit card or personnel number of a person, account data, number plate, appearance, customer number or address are all personal data so, as you can see is not only limited to names.

The document you are referring to is commonly referred to as a Data Processing Agreement in and is required under art. 28 of the GDPR.

You can find readily available templates for such a document in our EU GDPR Documentation Toolkit (https://advisera.com/eugdpracademy/eu-gdpr-documentation-toolkit/).

2. Does the data processing itself only guarantee that my application treats the data in accordance with DSGVO or does it run as I claim?

Answer:

You as the owner of the app and as a processor of personal data need to ensure that you are processing personal data in a way that is compliant with the EU. This is the purpose behind a Data Processing Agreement to give comfort to the data controller that you will be processing data in a compliant manner.

3. Do I have to protect the software itself as I would have to protect data?

Answer:

You need to ensure that your software has adequate safeguards in place to protect the personal data that is being processed. The safeguard will vary depending on the types and categories of personal data. Article 32 of the GDPR provide some examples such as anonymization and pseudonymization.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Aug 29, 2019

Aug 29, 2019

Suggested Topics

Guest user Created:   Jun 21, 2022 EU GDPR
Replies: 2
0 0

Split between EU GDPR and UK GDPR

Guest user Created:   Apr 04, 2022 EU GDPR
Replies: 1
0 0

EU GDPR Status