GDPR-20-03
Requirement
20 — Right to data portability
Enable direct data transmission between controllers when technically feasible
Description
Controllers must facilitate direct transmission of personal data from one controller to another when requested by the data subject and when technically feasible.
Full Analysis & Evidence Requirements
Sign in to view the full obligation text, AI-generated applicability analysis, evidence checklists, and compliance mapping.
Sign In to ViewRelated Obligations
GDPR-20-01
Requirement
Provide personal data in structured, machine-readable format
GDPR-20-02
Requirement
Enable data transmission to another controller without hindrance
GDPR-20-04
Prohibition
Exclude data portability for public interest or official authority tasks
GDPR-20-05
Requirement
Ensure data portability does not adversely affect others' rights and freedoms
Map this obligation to your AI systems
ReguLume automatically maps regulatory obligations to your system inventory, identifies compliance gaps, and generates remediation plans.
Get Started