{"id":5994,"date":"2023-03-01T12:12:12","date_gmt":"2023-03-01T11:12:12","guid":{"rendered":"https:\/\/www.wsinteractive.com\/?p=5994"},"modified":"2023-03-02T10:37:43","modified_gmt":"2023-03-02T09:37:43","slug":"rdpr-part-2-what-are-the-key-rules-to-respect","status":"publish","type":"post","link":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/","title":{"rendered":"GDPR &#8211; Part 2: What are the key rules to respect?"},"content":{"rendered":"\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p><em>GDPR: 5 key rules and principles to know and apply!<\/em><\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:68.7%\">\n<h2 class=\"wp-block-heading\" id=\"h-gdpr-data-processing-the-key-principles\">GDPR &amp; data processing: the key principles<\/h2>\n\n\n\n<p>The GDPR seems quite complicated? No need to panic! WS is here to enlighten you.<\/p>\n\n\n\n<p>Between good practices, key reflexes and main principles, WS reveals the <strong>5 Golden Rules of the General Data Protection Regulation<\/strong>!<\/p>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<p>In the program, we will talk about :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Purpose of data processing<\/strong><\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Legality of processing personal data<\/strong><\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Limited retention of personal data<\/strong><\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Monitoring &amp; Securing data processing activities<\/strong><\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Transparency <\/strong>&amp; Data subject rights!<\/li>\n<\/ul>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<figure class=\"wp-block-image size-medium\"><img decoding=\"async\" width=\"300\" height=\"289\" src=\"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/03\/article_image_2-300x289.png\" alt=\"\" class=\"wp-image-5948\" srcset=\"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/03\/article_image_2-300x289.png 300w, https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/03\/article_image_2-1024x986.png 1024w, https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/03\/article_image_2-768x740.png 768w, https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/03\/article_image_2.png 1081w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/figure>\n<\/div>\n<\/div>\n\n\n\n<p><strong>Note: <\/strong>In France, all GDPR principles are organized by the <a href=\"https:\/\/www.cnil.fr\/fr\/definition\/sanction\" target=\"_blank\" rel=\"noreferrer noopener\">CNIL <\/a>(Commission Nationale de l&#8217;Information et des Libert\u00e9s).<\/p>\n\n\n\n<div style=\"height:12px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-at-the-heart-of-the-gdpr-the-purpose-of-each-data-processing\">At the heart of the GDPR: the purpose of each data processing<\/h3>\n\n\n\n<p>An essential principle in the respect of the GDPR: <strong>the<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">finalization of the processing<\/mark>must be precise, pre-determined and limited<\/strong>.<\/p>\n\n\n\n<p><strong><mark style=\"background-color:#8865fa\" class=\"has-inline-color has-white-color\">Finalization?<\/mark><\/strong> This is the <strong>objective<\/strong> that motivates the collection, recording, exploitation and cross-referencing of data for your activities. <strong>All data collection<\/strong> must meet <strong><em>legitimate and clearly defined <\/em>objectives<\/strong>, in a way <strong>that is simple and understandable by your users<\/strong>.<\/p>\n\n\n\n<p>In practice, this means that <strong>each data collected must be collected for a specific purpose, to be presented and justified<\/strong> to the persons concerned! This practice will assure your users that their data will not be used for anything other than the purpose <strong>to which they consented <\/strong>(seen, read and agreed) in the first place.<\/p>\n\n\n\n<p>And what goes hand in hand with the <strong>finalization<\/strong> principle? The principle of<strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">data minimization<\/mark><\/strong>!<\/p>\n\n\n\n<p><strong><mark style=\"background-color:#8865fa\" class=\"has-inline-color has-white-color\">Minimization?<\/mark><\/strong> It means <strong>collecting only the data you really need and making sure it is accurate<\/strong> (and up-to-date \ud83d\ude09 )!<\/p>\n\n\n\n<p>The data collected must be &#8220;<strong>adequate, relevant and limited to what is necessary<\/strong>&#8221; for the purpose defined for each collection.<\/p>\n\n\n\n<p>In concrete terms, ask yourself if the data has a direct <strong>link with the objective you are pursuing<\/strong> (<em>against example: the family situation during a job interview has nothing to do with the skills of a candidate<\/em>!)<\/p>\n\n\n\n<p>In short: don&#8217;t give in to curiosity (<em>or compulsive data collection ;<\/em>)) and stick to the essentials!<\/p>\n\n\n\n<div style=\"height:12px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-liceite-du-traitement-les-bases-legales-reconnues-par-le-gdpr\"><strong>Lic\u00e9it\u00e9 du traitement &#8211; les bases l\u00e9gales reconnues par le GDPR <\/strong><\/h3>\n\n\n\n<p>Knowing the basic principles related to the purpose of the processing is good, but understanding <strong>the legal bases to build your GDPR compliance<\/strong> is better!<\/p>\n\n\n\n<p><strong>So, what are the legal bases provided by the GDPR ?<\/strong><\/p>\n\n\n\n<p>The GDPR allows you to base your collection and processing of personal data on one of <strong>the 6 legal bases<\/strong> provided by its <a href=\"https:\/\/www.cnil.fr\/fr\/reglement-europeen-protection-donnees\/chapitre2#Article6\" target=\"_blank\" rel=\"noreferrer noopener\">article 6 (RGPD, Chapter II, Art. 6)<\/a>. Here are the 5 most commonly invoked legal bases:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong><a href=\"https:\/\/www.cnil.fr\/fr\/les-bases-legales\/consentement\" target=\"_blank\" rel=\"noreferrer noopener\">Consent<\/a>:<\/strong> the user has given his agreement (free, consent &amp; informed) to collect and process his data in relation to the stated purpose;<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong><a href=\"https:\/\/www.cnil.fr\/fr\/les-bases-legales\/contrat\" target=\"_blank\" rel=\"noreferrer noopener\">Contract<\/a>: <\/strong>data is collected and processed in the context of the preparation or execution of a contract with the user (for example: the T&amp;C accepted by your user when subscribing to a service)<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong><a href=\"https:\/\/www.cnil.fr\/fr\/les-bases-legales\/interet-legitime\" target=\"_blank\" rel=\"noreferrer noopener\">Legitimate interest<\/a>:<\/strong> data are collected and processed to pursue legitimate interests for your organization (statistics, commercial objectives\u2026), in strict compliance with the rights and interests of your web users.<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>The public interest mission:<\/strong> the processing is necessary for the execution of a public interest mission (defined by a national or international law);<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong><a href=\"https:\/\/www.cnil.fr\/fr\/les-bases-legales\/obligation-legale\" target=\"_blank\" rel=\"noreferrer noopener\">Legal obligation<\/a>: <\/strong>the data are collected to meet a legal obligation (taxation, census, other\u2026).<\/li>\n<\/ul>\n\n\n\n<div style=\"height:15px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<figure class=\"wp-block-image size-thumbnail\"><img decoding=\"async\" width=\"150\" height=\"150\" src=\"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/03\/article_image_3-150x150.png\" alt=\"\" class=\"wp-image-5943\"\/><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:86.7%\">\n<div style=\"height:6px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p>Keep in mind: One purpose and one legal basis at a time!<\/p>\n\n\n\n<p><strong>Each collection &amp; processing of personal data must have its own purpose and legal basis. <\/strong>It is not possible to &#8220;cumulate&#8221; legal bases for the same purpose: only one must be chosen.<\/p>\n<\/div>\n<\/div>\n\n\n\n<div style=\"height:12px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-gdpr-collected-data-best-practices\">GDPR &amp; collected data: best practices<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-limited-retention-period-define-a-time-of-use-for-the-personal-data-collected\">Limited retention period &#8211; Define a time of use for the personal data collected<\/h3>\n\n\n\n<p>Whatever the legal basis chosen to justify the processing of your data, always make sure you follow the <strong>principle of <mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">limiting the retention of the data collected<\/mark><\/strong>!<\/p>\n\n\n\n<p>Because yes: our data must also have an expiration date to respect!<\/p>\n\n\n\n<p>Keeping personal data indefinitely? No way! A retention period is defined by the data controller, depending on the purpose of the data collection.<\/p>\n\n\n\n<p>For <strong>each data processing<\/strong>, you must determine :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>A fixed <strong>retention period<\/strong> (1 year, 5 years, 10 years\u2026)<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><em>Or <\/em><strong>the criterion<\/strong> (as objective as possible, therefore quantified and reliable) to <strong>determine the retention period<\/strong> (e.g. fulfilling a quantified and achievable objective, time of a contractual relationship, etc.)<\/li>\n<\/ul>\n\n\n\n<p><strong>Note:<\/strong> in some cases, the<strong> law<\/strong> defines <strong>this limited retention period.<\/strong><\/p>\n\n\n\n<p>A concrete case that might interest you? The retention of a prospect&#8217;s data for your product\/service offer! The law sets the maximum retention period at 3 years, starting from the last contact with the prospect in question.<\/p>\n\n\n\n<p>After this period, the data must<strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">be archived, deleted<\/mark><\/strong><mark style=\"background-color:rgba(0, 0, 0, 0)\" class=\"has-inline-color has-black-color\">or<\/mark><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">anonymized<\/mark><\/strong>.<\/p>\n\n\n\n<div style=\"height:12px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-tracking-and-securing-of-the-data-used\">Tracking and securing of the data used<\/h3>\n\n\n\n<p>Once is not usual &#8211; Whatever the retention period defined for your data, 2 requirements are imposed on you: that of <strong>carefully recording,<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">tracking &amp; securing the data<\/mark>you collect and use<\/strong>.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Data security<\/strong> &amp; <strong>confidentiality<\/strong>: you must ensure the security of your premises and information systems. The protection of the integrity and confidentiality of data must be optimized as much as possible! The ABC&#8217;s? <strong>Control access<\/strong> to each database with a system of passwords and dedicated access rights.<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Follow the data collection &amp; exploitation, thanks to the<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">processing register<\/mark>:<\/strong> as a data controller, you must build and keep a <strong>register of the processing<\/strong> activities carried out under your responsibility. This monitoring of activities is to be carried out by your Data Protection Officer (or DPO), to be appointed as a referent on RDPR compliance issues.<\/li>\n<\/ul>\n\n\n\n<p>Need to be accompanied on <strong>the design of your treatment register &amp; on the questions related to the GDPR ?<\/strong> Do not hesitate to contact us, we are here to guide you!<\/p>\n\n\n\n<div style=\"height:12px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-transparency-respect-of-users-rights\">Transparency &amp; Respect of Users&#8217; Rights<\/h3>\n\n\n\n<p>We cannot repeat it enough: first of all, to respect the spirit of the GDPR, <strong>transparency<\/strong> is the key! <strong>The obligation of<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">transparency of information<\/mark><\/strong>is a fundamental principle of the GDPR.<\/p>\n\n\n\n<p>You must inform your users in a <strong>legal, fair and transparent<\/strong> way about the processing of their data. Don&#8217;t forget to also inform them about how they can <strong>exercise their rights<\/strong>, so they can decide whether or not they will entrust you with their data. You will find all the details about your users&#8217; rights in our next article!<\/p>\n\n\n\n<p>By following these principles and best practices, no doubt, you are building your GDPR compliance step by step!<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-style-cta-quote has-background is-layout-flow wp-block-quote-is-layout-flow\" style=\"background-color:#fefefe\">\n<p>Reminder &#8211; the 4 pillars of the GDPR:<\/p>\n\n\n\n<p>1 &#8211;<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">Purpose &amp; Data Minimization <\/mark>&#8211; Collect only the data that is really necessary: what are your objectives? What data is really relevant, essential to fulfill them?<\/p>\n\n\n\n<p>2 &#8211;<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\"><strong>Transparency<\/strong><\/mark><strong><mark style=\"background-color:rgba(0, 0, 0, 0)\" class=\"has-inline-color has-black-color\">&#8211; Informing users about the collection and use of their data: what data is collected? For what purpose? Who manages the collection and processing of this data?<\/mark><\/strong><\/p>\n\n\n\n<p>3 &#8211;<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\"><strong>Rights<\/strong><\/mark><mark style=\"background-color:rgba(0, 0, 0, 0)\" class=\"has-inline-color has-black-color\"><strong>&#8211; Knowing &amp; respecting people&#8217;s rights on their data<\/strong> <\/mark><\/p>\n\n\n\n<p>4 &#8211;<mark style=\"background-color:rgba(0, 0, 0, 0);color:#8865fa\" class=\"has-inline-color\">Confidentially &amp; Security<\/mark><mark style=\"background-color:rgba(0, 0, 0, 0)\" class=\"has-inline-color has-black-color\">&#8211; Implement controlled access to collected data and security measures adapted to the sensitivity of the data processed<\/mark><\/p>\n<\/blockquote>\n\n\n\n<div style=\"height:35px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p><mark style=\"background-color:#ffffff;color:#8865fa\" class=\"has-inline-color\"><strong>Sources, for more information:<\/strong><\/mark><\/p>\n\n\n\n<p>Go to the <a href=\"https:\/\/www.cnil.fr\/fr\/cnil-direct\/question\/quels-sont-les-grands-principes-des-regles-de-protection-des-donnees\" target=\"_blank\" rel=\"noreferrer noopener\"><strong>CNIL <\/strong><\/a>website or to your <strong><a href=\"https:\/\/www.wsinteractive.com\/\" target=\"_blank\" rel=\"noreferrer noopener\">favorite web agency<\/a><\/strong>!<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Little bonus, our <strong><a href=\"https:\/\/www.wsinteractive.com\/en\/blog\/conformite-rgpd\/\" target=\"_blank\" rel=\"noreferrer noopener\">article on GDPR compliance<\/a><\/strong> is online!<\/li>\n<\/ul>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Obligations and principles on data protection yes, but do you really know how to apply them? To better respect the GDPR, WS explains everything! <\/p>\n","protected":false},"author":1,"featured_media":5380,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[81,84],"tags":[149,150,120],"class_list":["post-5994","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-web-development","category-web-strategy","tag-donnees-personnelles-en","tag-rgpd-en","tag-website"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>GDPR - Part 2: What are the key rules to respect? - WS Interactive<\/title>\n<meta name=\"description\" content=\"GDPR: Key rules on data protection.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"GDPR - Part 2: What are the key rules to respect? - WS Interactive\" \/>\n<meta property=\"og:description\" content=\"GDPR: Key rules on data protection.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/\" \/>\n<meta property=\"og:site_name\" content=\"WS Interactive\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/wsinteractive\" \/>\n<meta property=\"article:published_time\" content=\"2023-03-01T11:12:12+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-03-02T09:37:43+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/02\/article_image_1.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1303\" \/>\n\t<meta property=\"og:image:height\" content=\"721\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Alice\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@ws_interactive\" \/>\n<meta name=\"twitter:site\" content=\"@ws_interactive\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Alice\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"7 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/\"},\"author\":{\"name\":\"Alice\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#\\\/schema\\\/person\\\/bbb9c3d816f010353bf806888833a517\"},\"headline\":\"GDPR &#8211; Part 2: What are the key rules to respect?\",\"datePublished\":\"2023-03-01T11:12:12+00:00\",\"dateModified\":\"2023-03-02T09:37:43+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/\"},\"wordCount\":1186,\"publisher\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.wsinteractive.com\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/article_image_1.png\",\"keywords\":[\"Donn\u00e9es personnelles\",\"RGPD\",\"Website\"],\"articleSection\":[\"Web development\",\"Web strategy\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/\",\"url\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/\",\"name\":\"GDPR - Part 2: What are the key rules to respect? - WS Interactive\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.wsinteractive.com\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/article_image_1.png\",\"datePublished\":\"2023-03-01T11:12:12+00:00\",\"dateModified\":\"2023-03-02T09:37:43+00:00\",\"description\":\"GDPR: Key rules on data protection.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.wsinteractive.com\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/article_image_1.png\",\"contentUrl\":\"https:\\\/\\\/www.wsinteractive.com\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/article_image_1.png\",\"width\":1303,\"height\":721},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/blog\\\/rdpr-part-2-what-are-the-key-rules-to-respect\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"GDPR &#8211; Part 2: What are the key rules to respect?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/\",\"name\":\"WS Interactive\",\"description\":\"WS\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#organization\",\"name\":\"WS Interactive\",\"url\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.wsinteractive.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/cropped-WSI_logo.svg\",\"contentUrl\":\"https:\\\/\\\/www.wsinteractive.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/cropped-WSI_logo.svg\",\"caption\":\"WS Interactive\"},\"image\":{\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/wsinteractive\",\"https:\\\/\\\/x.com\\\/ws_interactive\",\"https:\\\/\\\/fr.linkedin.com\\\/company\\\/ws-interactive\",\"https:\\\/\\\/www.instagram.com\\\/ws_interactive\\\/\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.wsinteractive.com\\\/en\\\/#\\\/schema\\\/person\\\/bbb9c3d816f010353bf806888833a517\",\"name\":\"Alice\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/22cb33f9998ae58ba0c360401b6bac1d792aa76450f5aa507f532f01106d8fa9?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/22cb33f9998ae58ba0c360401b6bac1d792aa76450f5aa507f532f01106d8fa9?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/22cb33f9998ae58ba0c360401b6bac1d792aa76450f5aa507f532f01106d8fa9?s=96&d=mm&r=g\",\"caption\":\"Alice\"},\"sameAs\":[\"https:\\\/\\\/www.wsinteractive.com\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"GDPR - Part 2: What are the key rules to respect? - WS Interactive","description":"GDPR: Key rules on data protection.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/","og_locale":"en_US","og_type":"article","og_title":"GDPR - Part 2: What are the key rules to respect? - WS Interactive","og_description":"GDPR: Key rules on data protection.","og_url":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/","og_site_name":"WS Interactive","article_publisher":"https:\/\/www.facebook.com\/wsinteractive","article_published_time":"2023-03-01T11:12:12+00:00","article_modified_time":"2023-03-02T09:37:43+00:00","og_image":[{"width":1303,"height":721,"url":"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/02\/article_image_1.png","type":"image\/png"}],"author":"Alice","twitter_card":"summary_large_image","twitter_creator":"@ws_interactive","twitter_site":"@ws_interactive","twitter_misc":{"Written by":"Alice","Est. reading time":"7 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/#article","isPartOf":{"@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/"},"author":{"name":"Alice","@id":"https:\/\/www.wsinteractive.com\/en\/#\/schema\/person\/bbb9c3d816f010353bf806888833a517"},"headline":"GDPR &#8211; Part 2: What are the key rules to respect?","datePublished":"2023-03-01T11:12:12+00:00","dateModified":"2023-03-02T09:37:43+00:00","mainEntityOfPage":{"@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/"},"wordCount":1186,"publisher":{"@id":"https:\/\/www.wsinteractive.com\/en\/#organization"},"image":{"@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/#primaryimage"},"thumbnailUrl":"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/02\/article_image_1.png","keywords":["Donn\u00e9es personnelles","RGPD","Website"],"articleSection":["Web development","Web strategy"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/","url":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/","name":"GDPR - Part 2: What are the key rules to respect? - WS Interactive","isPartOf":{"@id":"https:\/\/www.wsinteractive.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/#primaryimage"},"image":{"@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/#primaryimage"},"thumbnailUrl":"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/02\/article_image_1.png","datePublished":"2023-03-01T11:12:12+00:00","dateModified":"2023-03-02T09:37:43+00:00","description":"GDPR: Key rules on data protection.","breadcrumb":{"@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/#primaryimage","url":"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/02\/article_image_1.png","contentUrl":"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2023\/02\/article_image_1.png","width":1303,"height":721},{"@type":"BreadcrumbList","@id":"https:\/\/www.wsinteractive.com\/en\/blog\/rdpr-part-2-what-are-the-key-rules-to-respect\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.wsinteractive.com\/en\/"},{"@type":"ListItem","position":2,"name":"GDPR &#8211; Part 2: What are the key rules to respect?"}]},{"@type":"WebSite","@id":"https:\/\/www.wsinteractive.com\/en\/#website","url":"https:\/\/www.wsinteractive.com\/en\/","name":"WS Interactive","description":"WS","publisher":{"@id":"https:\/\/www.wsinteractive.com\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.wsinteractive.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.wsinteractive.com\/en\/#organization","name":"WS Interactive","url":"https:\/\/www.wsinteractive.com\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.wsinteractive.com\/en\/#\/schema\/logo\/image\/","url":"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2024\/02\/cropped-WSI_logo.svg","contentUrl":"https:\/\/www.wsinteractive.com\/wp-content\/uploads\/2024\/02\/cropped-WSI_logo.svg","caption":"WS Interactive"},"image":{"@id":"https:\/\/www.wsinteractive.com\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/wsinteractive","https:\/\/x.com\/ws_interactive","https:\/\/fr.linkedin.com\/company\/ws-interactive","https:\/\/www.instagram.com\/ws_interactive\/"]},{"@type":"Person","@id":"https:\/\/www.wsinteractive.com\/en\/#\/schema\/person\/bbb9c3d816f010353bf806888833a517","name":"Alice","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/22cb33f9998ae58ba0c360401b6bac1d792aa76450f5aa507f532f01106d8fa9?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/22cb33f9998ae58ba0c360401b6bac1d792aa76450f5aa507f532f01106d8fa9?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/22cb33f9998ae58ba0c360401b6bac1d792aa76450f5aa507f532f01106d8fa9?s=96&d=mm&r=g","caption":"Alice"},"sameAs":["https:\/\/www.wsinteractive.com"]}]}},"_links":{"self":[{"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/posts\/5994","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/comments?post=5994"}],"version-history":[{"count":5,"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/posts\/5994\/revisions"}],"predecessor-version":[{"id":6002,"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/posts\/5994\/revisions\/6002"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/media\/5380"}],"wp:attachment":[{"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/media?parent=5994"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/categories?post=5994"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.wsinteractive.com\/en\/wp-json\/wp\/v2\/tags?post=5994"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}