Data (Use and Access) Act 2025 amends UK GDPR requirements
Original title: The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 effect on Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (United Kingdom General Data Protection Regulation) (Text with EEA relevance)
The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 introduces amendments to the UK GDPR framework. These consequential amendments align UK GDPR provisions with the requirements of the new Data (Use and Access) Act 2025, affecting how personal data can be processed and accessed. Organizations handling personal data under UK GDPR must review and update their data processing procedures to comply with the new regulatory requirements introduced by this Act.
What changed
- The Data (Use and Access) Act 2025 (Consequential Amendments and Transitional Provision) Regulations 2026 introduces consequential amendments to UK GDPR. These amendments ensure UK GDPR aligns with the requirements and provisions of the Data (Use and Access) Act 2025, which creates new rights and obligations related to data use and access.
- Transitional provisions are established to facilitate the transition from existing UK GDPR requirements to the amended framework. Organizations are given specific timelines and conditions to implement changes required by the new amendments.
Who is affected
All organizations processing personal data under UK GDPR: data controllers, data processors, and data subjects. The amendments apply across all sectors and sizes of organizations handling personal data in the UK and those processing UK residents' data.
Summary generated by a language model; the official text prevails. Not legal advice.