The Data (Use and Access) Act 2025 introduces consequential amendments to UK GDPR

Original title: The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 effect on Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (United Kingdom General Data Protection Regulation) (Text with EEA relevance)

The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 amend UK GDPR to align with the new data access and use framework. These amendments adjust specific provisions of UK GDPR to reflect changes introduced by the Data (Use and Access) Act 2025. Organisations processing personal data in the UK must review how these amendments affect their compliance obligations, particularly regarding data access rights and processing frameworks.

What changed

  • The regulations make consequential amendments to UK GDPR to ensure consistency with the Data (Use and Access) Act 2025
  • Transitional provisions are introduced to manage the transition period as the new data access and use framework takes effect
  • Specific GDPR provisions are modified to align with the new legislative framework for data use and access

Who is affected

Organisations processing personal data in the UK, including controllers, processors, and data protection officers. All sectors are affected where personal data processing occurs.

Summary generated by a language model; the official text prevails. Not legal advice.