Fiji Data Protection Bill 2020 Part II - Data Protection Principles. SIX PRINCIPLES (closely mirror GDPR Art.5): (1) LAWFUL + FAIR + TRANSPARENT processing - personal data must be processed lawfully + fairly + transparently with respect to data subjects; (2) PURPOSE LIMITATION - collected for specified + explicit + legitimate purposes + not further processed in a manner incompatible with those purposes; (3) DATA MINIMISATION - adequate + relevant + limited to what is necessary; (4) ACCURACY - accurate + kept up to date; (5) STORAGE LIMITATION - retained no longer than necessary; (6) INTEGRITY + CONFIDENTIALITY - processed in a manner that ensures appropriate security including protection against unauthorised + unlawful processing + accidental loss + destruction + damage. LAWFUL BASIS for processing (Bill clause + similar to GDPR Art.6): (a) CONSENT - freely given + specific + informed + unambiguous; (b) CONTRACT performance; (c) LEGAL OBLIGATION; (d) VITAL INTERESTS; (e) PUBLIC INTEREST + official authority; (f) LEGITIMATE INTERESTS (balanced against data subject rights). CONSENT: written + electronic + age-of-consent provisions for children (typically 16 mirroring GDPR or 13 mirroring Singapore PDPA - the Bill defaults to GDPR-aligned 16 unless otherwise specified by the Minister).
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.