Data Protection Act 1998 Flashcards
1
Q
Name the 8 principles.
A
- Collected and processed fairly and lawfully.
- Collected and used only for specified and lawful purpose(s).
- Adequate, relevant and not excessive.
- Accurate and up-to-date.
- Kept no longer than necessary.
- Processed in accordance with rights of data subjects.
- Kept secure.
- Not transferred outside EU unless adequate levels of protection.
2
Q
Who are the 4 people involved in the DPA?
A
- Information Comissioner - Data must be registered to this person before it can be gathered. Is a non-departmental public body which reports directly to Parliament.
- Data Controller - Person in a company who decides what data should be collected.
- Data Subject - Person who the data is held about.
- Data user - Person who uses the data.
3
Q
What is personal data?
A
Data about a living individual which may identify them.
e.g:
- Name.
- Address.
- Medical details or banking details.
Sensitive personal data includes one or more details of a data subject’s:
- Racial or ethnic origin.
- Political opinions.
- Religion.
- Membership of a trade union.
- Health.
- Sex life.
- Criminal activity.
4
Q
What are your rights?
A
- You can see and request personal data - however, this may come at a fee.
- You can request data is deleted.
- You can claim compensation if data is not removed.