Kuwait Data Privacy Protection Regulation (KDPPR) issued by Communications and Information Technology Regulatory Authority (CITRA) Resolution No. 26 of 2021. Sector-specific directive (NOT comprehensive national data protection statute - Kuwait still drafting general data protection law). Scope: applies to telecommunications operators + Internet Service Providers (ISPs) + ICT licensed entities + cloud computing providers + government bodies + public services that process Personal Data through telecommunications + ICT infrastructure within or accessible from State of Kuwait. CITRA itself the regulator established under Law No. 37 of 2014 + Amiri Decree No. 26 of 2014. KDPPR aligned with international standards (GDPR-inspired but lighter touch) + considered transitional regulation pending broader national law. Article 1 purpose + Article 2 definitions (Personal Data + Data Subject + Data Controller + Data Processor + Processing + Cross-Border Transfer + Cloud + Sensitive Personal Data). Article 3 obligations summary.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.