Germany Federal Data Protection Act (BDSG)
Part 3: processing by competent authorities for law enforcement (Directive (EU) 2016/680) – Germany Federal Data Protection Act (BDSG)

Germany Federal Data Protection Act (BDSG) s71: s 71 Build in data protection by design and by default

When determining the means and when processing, the controller takes appropriate measures to implement the principles, such as data minimisation, effectively, choosing and designing systems to process as little data as possible and anonymising or pseudonymising as early as the purpose allows; by default only data necessary for each purpose are processed as regards amount, extent, storage period and accessibility, and data are not opened up automatically to an unlimited circle of people.

Maintained by Gerard Blokdyk

What else in your programme already covers this

This control maps to 1 controls across 1 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

GDPR · 1 control

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in Part 3: processing by competent authorities for law enforcement (Directive (EU) 2016/680) – Germany Federal Data Protection Act (BDSG)

Query this from an agent

The graph holds this control, the 1 it maps to, and the evidence behind each claim, over MCP and REST.