The Data (Use and Access) Act 2025 introduces consequential amendments to UK GDPR
Original title: The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 effect on Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (United Kingdom General Data Protection Regulation) (Text with EEA relevance)
The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 came into effect on 23 June 2026, making amendments to UK GDPR. These changes align the UK's personal data protection framework with the new rules governing data access and use rights. Organizations subject to UK GDPR must review and adjust their data handling practices to comply with these modifications, particularly regarding data subject rights and controller obligations under the expanded regulatory framework.
What changed
- The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 amend UK GDPR to reflect new legal provisions on data access and use rights introduced by the Data (Use and Access) Act 2025
Who is affected
All organizations processing personal data in the United Kingdom subject to UK GDPR, including controllers and processors handling personal data of UK residents and EU residents where UK GDPR applies.
Summary generated by a language model; the official text prevails. Not legal advice.