Compliance Library Blog Product Sign In
GDPR-40-05 Requirement 40 — Codes of conduct

Controllers not subject to GDPR must make binding commitments for code adherence

Description

Controllers not subject to GDPR that adhere to approved codes of conduct for data transfers must make binding and enforceable commitments via contractual or other legally binding instruments to apply...

Full Analysis & Evidence Requirements

Sign in to view the full obligation text, AI-generated applicability analysis, evidence checklists, and compliance mapping.

Sign In to View

Map this obligation to your AI systems

ReguLume automatically maps regulatory obligations to your system inventory, identifies compliance gaps, and generates remediation plans.

Get Started

Start your compliance assessment

Map obligations to your AI systems, identify gaps, and generate board-ready reports. Plans start at $149/mo.

Get Started