EuroComply
Konto erstellen
Blog
GDPR

GDPR

GDPR compliance guides and analysis — lawful basis, data subject rights, DPIAs, transfers, and supervisory authority enforcement decisions across EU27.

Schrems II and Consent Management: What EU Organisations Must Do Now

The ECJ's Schrems II ruling (C-311/18) invalidated the EU-US Privacy Shield and imposed additional safeguards on standard contractual clauses. This guide explains what consent managers and EU SMEs must do to remain GDPR-compliant for transatlantic data transfers.

How to Build a ROPA Under GDPR: A Practical Guide

Records of Processing Activities (ROPA) are required under GDPR Article 30 for most organisations. This guide covers what must be recorded, who is exempt, and how to build and maintain a ROPA your DPA will accept.

What Is GDPR? A Complete Guide for Businesses

GDPR (Regulation 2016/679) is the EU's data protection law. This guide covers the 6 lawful bases, data subject rights, ROPA, DPO, DPIA, and Article 83 fines — with practical guidance for SMEs.

DPIA Step-by-Step: When You Need One and How to Write It

A Data Protection Impact Assessment (DPIA) is mandatory under GDPR Article 35 for high-risk processing. This step-by-step guide walks through when one is required, what it must contain, and how to complete one efficiently.

GDPR DPIA: When You Need One and How to Write It

A Data Protection Impact Assessment is mandatory before high-risk processing under GDPR Article 35. This guide explains triggers, methodology, and documentation.

How to Audit Third-Party Data Processors Under GDPR

GDPR Article 28 requires organisations to use only processors providing sufficient guarantees. This guide explains how to audit vendors and maintain compliant DPAs.