The Data (Use and Access) Act 2025 amends UK GDPR rules on data subject rights and controller obligations
Original title: The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 effect on Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (United Kingdom General Data Protection Regulation) (Text with EEA relevance)
The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 applies consequential amendments to UK GDPR (Regulation (EU) 2016/679 as retained in UK law) effective from 23 June 2026. These amendments align the UK GDPR framework with the new Data (Use and Access) Act 2025, modifying how data controllers and processors must comply with data subject rights and organizational requirements under the retained regulation.
Who is affected
All organizations processing personal data in the UK under UK GDPR, including data controllers and processors operating under Regulation (EU) 2016/679 as retained in UK law
Summary generated by a language model; the official text prevails. Not legal advice.