Key Definitions
Jump to
Key Definitions Start Comparison
Personal data

Last review date: 10 December 2024

Any information related to an identified or identifiable person. An identifiable person is any person who can be identified directly or indirectly by making reference to an identification number or one or more factors specific to their physical, psychological, mental, economic, cultural or social identity.

Sensitive/special personal data (including personal data subject to additional protections/ restrictions/breach notification obligations)

Last review date: 10 December 2024

Sensitive data includes:

☒   personal data revealing racial or ethnic origin
☒   personal data revealing political opinions
☒   personal data revealing religious or philosophical belief
☒   personal data revealing trade union membership
☒   genetic data
☒   biometric data for the purpose of uniquely identifying a natural person
☒   data concerning health/medical information
☒   data concerning a natural person’s sex life or sexual orientation
☒   financial information
☒   personal data regarding an individual's criminal convictions or record

Any data that affects data subjects’ intimacy or which could be used to discriminate against them.

Controller vs Processor

Last review date: 10 December 2024

Do the privacy laws distinguish between controllers/owners and processors/agents? Whereby:

  • the controller/owner is an individual or legal entity, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data
  • the processor/agent is an individual or legal entity, public authority, agency or other body which processes personal data on behalf of the controller

Answer: Yes