Data (Use and Access) Act 2025 comes into force, amending UK GDPR
Original title: Data (Use and Access) Act 2025 effect on Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (United Kingdom General Data Protection Regulation) (Text with EEA relevance)
The Data (Use and Access) Act 2025 has come into force and introduces amendments to the UK General Data Protection Regulation. The Act creates new obligations regarding access to and reuse of data held by public bodies and private entities. Controllers must now comply with additional requirements related to data access rights and facilitate data portability and reuse in accordance with the new Act's provisions.
What changed
- Data (Use and Access) Act 2025 amendments to UK GDPR have taken effect as of the publication date, introducing new legal obligations for data controllers
- New requirements for facilitating data access and reuse have been added to the regulatory framework
- Controllers must ensure compliance with additional data access provisions established under the Data (Use and Access) Act 2025
Who is affected
All data controllers and processors operating in the United Kingdom subject to UK GDPR, including public bodies, private organisations, and entities processing personal data
Summary generated by a language model; the official text prevails. Not legal advice.