Data (Use and Access) Act 2025 amends UK GDPR requirements
Original title: The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 effect on Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (United Kingdom General Data Protection Regulation) (Text with EEA relevance)
The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 introduces consequential amendments to the UK General Data Protection Regulation. Organizations processing personal data in the UK must review how these changes affect their data handling practices, compliance obligations, and data subject rights under the amended GDPR framework.
What changed
- The Data (Use and Access) Act 2025 brings consequential amendments to UK GDPR effective from the Regulations 2026 coming into force
- Specific amendments affect how organizations must comply with GDPR obligations and exercise data subject rights
- Transitional provisions are included to manage the transition from previous GDPR requirements to the amended framework
Who is affected
All organizations processing personal data in the UK subject to UK GDPR, including data controllers, data processors, and any entity handling personal data of UK residents.
Summary generated by a language model; the official text prevails. Not legal advice.