EDPB Guidelines
EDPB provides documents offering interpretation of important GDPR issues. Some of the documents originates from the former WP29, endorsed by EDPB later.
Links
Guidelines 07/2020 on the concepts of controller and processor in the GDPR [PDF, 511 kB]
Guidelines 8/2020 on the targeting of social media users [PDF, 465 kB]
Guidelines 5/2019 on the criteria of the Right to be Forgotten in the search engines cases under the GDPR [PDF, 213 kB]
Guidelines 4/2019 on Article 25 Data Protection by Design and by Default [PDF, 305 kB]
Guidelines 2/2019 on the processing of personal data under Article 6(1)(b) GDPR in the context of the provision of online services to data subjects [PDF, 212 kB]
Guidelines 3/2018 on the territorial scope of the GDPR [PDF, 530 kB]
Guidelines 05/2020 on consent under Regulation 2016/679 [PDF, 291 kB]
Guidelines 04/2020 on the use of location data and contact tracing tools in the context of the COVID-19 outbreak [PDF, 276 kB]
Guidelines 03/2020 on the processing of data concerning health for the purpose of scientific research in the context of the COVID-19 outbreak [PDF, 206 kB]
Statement on the processing of personal data in the context of the COVID-19 outbreak [PDF, 211 kB]
Guidelines 3/2019 on processing of personal data through video devices [PDF, 688 kB]
Guidelines 1/2019 on Codes of Conduct and Monitoring [PDF, 367 kB]
Guidelines 4/2018 on the accreditation of certification bodies under Article 43 of the General Data Protection Regulation (2016/679) [PDF, 914 kB]
Guidelines 1/2018 on certification and identifying certification criteria in accordance with Articles 42 and 43 of the Regulation 2016/679 [PDF, 701 kB]
Guidelines 2/2018 on derogations of Article 49 under Regulation 2016/679 [PDF, 733 kB]
Guidelines on transparency under Regulation 2016/679 [PDF, 1,1 MB]
Guidelines on the application and setting of administrative fines for the purposes of the Regulation 2016/679 [PDF, 535 kB]
Guidelines on Personal data breach notification under Regulation 2016/679 [PDF, 976 kB]
Guidelines on Automated individual decision-making and Profiling for the purposes of Regulation 2016/679 [PDF, 970 kB]
Guidelines on Data Protection Impact Assessment (DPIA) and determining whether processing is “likely to result in a high risk” for the purposes of Regulation 2016/679 [PDF, 1,1 MB]
Guidelines on the right to data portability [PDF, 400 kB]
Guidelines on Data Protection Officers (‘DPOs’) [PDF, 1,1 MB]
Guidelines for identifying a controller or processor’s lead supervisory authority [PDF, 412 kB]