Does your business receive personal data from the EU/EEA?

Personal data is any information that can be used to identify a person, including names, delivery details, IP addresses, or HR data such as payroll details. Most organisations use personal data in their daily operations.

An example of this is a UK company that receives customer information from an EU company, such as names and addresses, to provide goods or services.

If you receive personal data from the EU/EEA act now to ensure you can continue to lawfully receive data from your clients in the EU from 1 January 2021.

This means:

  • you should take stock of the personal data you process prior to 1 January 2021
  • if you receive personal data from a company based in an EU/EEA country, you should map your data flows and put in place alternative transfer mechanisms, such as Standard Contractual Clauses (SCCs), with any relevant EU organisations (the EU has yet to make a decision as to whether they accept that the UK’s data protection regime is still adequate)

For further information please visit the GOV.UK website.

Further information can be found also be found on the on the Information Commissioner’s Office’s website.

Share this page

Print this page