Rättskällor med officiella primärkällor

Utskrivet ·

Hopp til innhold
Hopp til svaret

Agent · institutions-2018-1725-91

EUDPR artikel 91: Security of processing of operational personal data

Strukturelt tre: artikkelens egne punkter, ordrett.

CELEX 32018R1725 · 2026-08-18 · Vekt 62 · minimal-risk

OpenOpen reading. No metering is planned for this class.

EUDPROffisiell kilde

Hva siden er
Agent, EUDPR artikel 91
Lest mot offisiell kilde
2026-08-18Fersk
Ansvarlig utgiver
ExploreWorld Legal, redaksjonenAnsvarsposisjon

Jurisdiksjon

Samme agent, lest med ett lands øyne.

Inndata

  • in_scopeThe article applies to the situationboolean
  • punktParagraph of the articleenum (1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14)

Regeltre

  1. Hvis: alla(in_scope = true, punkt = 1)

    Paragraph 1 applies

    1. The controller and the processor shall, taking into account the state of the art, the costs of implementation and the nature, scope, context and purposes of the processing as well as the risks of varying likelihood and severity for the rights and freedoms of natural persons, implement appropriate technical and organisational measures to ensure a level of security appropriate to the risks, in particular as regards…

    Punkt 1

  2. Hvis: alla(in_scope = true, punkt = 2)

    Paragraph 2 applies

    2. In respect of automated processing, the controller and the processor shall, following an evaluation of the risks, implement measures designed to:

    Punkt 2

  3. Hvis: alla(in_scope = true, punkt = 3)

    Paragraph 3 applies

    (a)

    Punkt 3

  4. Hvis: alla(in_scope = true, punkt = 4)

    Paragraph 4 applies

    deny unauthorised persons access to data processing equipment used for processing (‘equipment access control’);

    Punkt 4

  5. Hvis: alla(in_scope = true, punkt = 5)

    Paragraph 5 applies

    (b)

    Punkt 5

  6. Hvis: alla(in_scope = true, punkt = 6)

    Paragraph 6 applies

    prevent the unauthorised reading, copying, modification or removal of data media (‘data media control’);

    Punkt 6

  7. Hvis: alla(in_scope = true, punkt = 7)

    Paragraph 7 applies

    (c)

    Punkt 7

  8. Hvis: alla(in_scope = true, punkt = 8)

    Paragraph 8 applies

    prevent the unauthorised input of operational personal data and the unauthorised inspection, modification or deletion of stored operational personal data (‘storage control’);

    Punkt 8

  9. Hvis: alla(in_scope = true, punkt = 9)

    Paragraph 9 applies

    (d)

    Punkt 9

  10. Hvis: alla(in_scope = true, punkt = 10)

    Paragraph 10 applies

    prevent the use of automated processing systems by unauthorised persons using data communication equipment (‘user control’);

    Punkt 10

  11. Hvis: alla(in_scope = true, punkt = 11)

    Paragraph 11 applies

    (e)

    Punkt 11

  12. Hvis: alla(in_scope = true, punkt = 12)

    Paragraph 12 applies

    ensure that persons authorised to use an automated processing system have access only to the operational personal data covered by their access authorisation (‘data access control’);

    Punkt 12

  13. Hvis: alla(in_scope = true, punkt = 13)

    Paragraph 13 applies

    (f)

    Punkt 13

  14. Hvis: alla(in_scope = true, punkt = 14)

    Paragraph 14 applies

    ensure that it is possible to verify and establish the bodies to which operational personal data have been or may be transmitted or made available using data communication (‘communication control’);

    Punkt 14

Hvis ingen regel treffer: The article is not stated to apply, or no paragraph is selected. The agent abstains rather than guesses.

Artikkelteksten som ble lest

  1. 11. The controller and the processor shall, taking into account the state of the art, the costs of implementation and the nature, scope, context and purposes of the processing as well as the risks of varying likelihood and severity for the rights and freedoms of natural persons, implement appropriate technical and organisational measures to ensure a level of security appropriate to the risks, in particular as regards the processing of special categories of operational personal data.
  2. 22. In respect of automated processing, the controller and the processor shall, following an evaluation of the risks, implement measures designed to:
  3. 3(a)
  4. 4deny unauthorised persons access to data processing equipment used for processing (‘equipment access control’);
  5. 5(b)
  6. 6prevent the unauthorised reading, copying, modification or removal of data media (‘data media control’);
  7. 7(c)
  8. 8prevent the unauthorised input of operational personal data and the unauthorised inspection, modification or deletion of stored operational personal data (‘storage control’);
  9. 9(d)
  10. 10prevent the use of automated processing systems by unauthorised persons using data communication equipment (‘user control’);
  11. 11(e)
  12. 12ensure that persons authorised to use an automated processing system have access only to the operational personal data covered by their access authorisation (‘data access control’);
  13. 13(f)
  14. 14ensure that it is possible to verify and establish the bodies to which operational personal data have been or may be transmitted or made available using data communication (‘communication control’);

Opphav

treatyTFEU art. 288 (förordning)
act32018R1725
chapter
article91
paragraphs14
jurisdictionEuropean Union (EU)
supervisorEDPS — European Data Protection Supervisor
national

Grensesnitt

callhttps://legal.exploreworldai.com/api/public/v1/agents/institutions-2018-1725-91/run
methodGET
outputmatched, outcome, trace, missing, hash
Kvote60 anrop per minut och adress, utan nyckel
stabilityRegelträdet versioneras. En ändring byter artefakthash, aldrig adress.

Hasher

textsha256:6c2d05fee83b5ca1b1c512d0d698ad876799d4bdc7167c5abbb41a921b5deb60
scriptsha256:fd269e8b1a2697246c660ec506680d5fe454aac525b2049bbd5926b497603dd3
enginesha256:0a4bd50d21f8ec9be383fc091511008b76ad61909cbfb674eab56fe567fbd7a0
agentsha256:85b8330a22252a0460c0e235fe44549d6343c5d3fbf5c3d213421634334a26ec
versionagent-engine-1+legal-2026-08-25 / 85b8330a22252a04

Artefakter

Ingen rådgivning. Deterministisk regeluppslagning. Ingen juridisk rådgivning, inget efterlevnadsbeslut, ingen bedömning av ett enskilt ärende.

Sitering: 32018R1725 art. 91, Security of processing of operational personal data. ExploreWorld Legal, https://legal.exploreworldai.com/agent/institutions-2018-1725/artikel-91 (hämtad 2026-08-18, bevis sha256:ee1ecf69f79ded40, bygge legal-2026-08-25).