The Data Protection Act 1998 Flashcards
What is The Data Protection Act 1998?
A law designed too protect personal data stored on computers or in an organised paper filling system
Who is protected by the act?
Clients, staff, and customers
What is the purpose of The Data Protection Act?
Too control the way information is handled and to give legal rights to people who have information stored about them.
How does the act ‘work’?
- Setting up rules that people have too follow
2. Having an Information Commissioner to enforce the rules
What are the two types of data?
- Personal Data
2. Sensitive Personal Data
What are the 8 principles of Data Protection?
- Must be collected and used fairly inside the law
- Must only be held and used for suitable reasons
- Can only be used for registered purposes, cannot give it away or sell it without consent
- Must be adequate, relevant, and not excessive
- Must be kept accurate and up too date
- Must not be kept any longer than necessary
- Information must be kept safe and secure
- Files may not be transferred outside of the EU
What are the rights of data subjects?
- Right of subject access
- Right of correction
- Right to prevent distress
- Right to prevent direct marketing
- Right to prevent automatic decisions
- Right of complaint too the Information Commissioner
- A right too compensation
What is an exemption?
What is not included within the act
Give an example of a Complete Exemption of Data from the act
Any personal data that is held for a national security reason
Give 3 examples of Partial Exemption of Data from the act
- A school pupil has no right of access to personal files, or exam results before publication
- Employment references written by a previous employer are exempt
- A data controller can keep the data for any amount of time if it is being used for statistical, historical, or research purposes
give 3 examples of personal data
- Their name
- Addresses
- Medical details or banking details
give 3 examples of Sensitive Personal Data
- Religion
- Political opinions
- Criminal activity
what is a data subject?
Individuals who have personal data stored about them
What are 3 concerns which arose due too businesses, settings, and companies using data bases too store information?
- Who could access the information
- Could it be easily copied?
- What information is being stored without individuals knowledge of consent
When was this act last updated?
2018