Definition
The General Data Protection Regulation (GDPR) is a comprehensive data privacy law enacted by the European Union in 2018 that governs how organizations collect, process, and store personal data of EU residents. For creators with European audiences, GDPR compliance is legally required regardless of where the creator is based. Key GDPR requirements include obtaining explicit consent before collecting personal data, providing clear privacy notices, honoring data subject rights (including the right to erasure), and reporting data breaches within 72 hours. Non-compliance can result in fines of up to €20 million or 4% of global annual revenue. Creators who run email lists, sell products, or use analytics tools that collect EU user data must ensure GDPR compliance.
Related Terms
Also Referenced By
4These terms link to GDPR in their definitions.