Establish the legal foundation of Mauritius Data Protection Act 2017 (Act No. 20 of 2017) enacted by National Assembly + assented by President Ameenah Gurib-Fakim 18 December 2017 + Government Notice 219 of 2017 + effective 15 January 2018. Replaced Data Protection Act 2004. Foundational Mauritian data protection statute aligned with EU GDPR Regulation 2016/679 + Council of Europe Convention 108+ (Mauritius first non-European state to ratify Convention 108 in 2016 + ratified Convention 108+ Protocol 2018) + AU Malabo Convention on Cyber Security and Personal Data Protection 2014. Data Protection Office (DPO) Mauritius independent supervisory authority + headquartered Port Louis + Data Protection Commissioner appointed by Public Service Commission for 5-year term + reports to National Assembly. Constitution of Mauritius Section 9 (protection of privacy of home and other property) + Section 12 (freedom of expression) anchors. Bilingual administration English working + French administrative/judicial + Mauritian Creole national. Geographic scope Mauritius main island + Rodrigues + Agalega + St Brandon + extraterritorial application via Section 4 to controllers established in Mauritius processing data overseas + offering goods/services or monitoring behaviour of data subjects in Mauritius. Mauritius as financial services hub (Mauritius IBC + GBC) makes cross-border transfer regime particularly significant. Sectoral coordination with BoM + FSC + MRA + ICTA. African Network of Personal Data Protection Authorities (RAPDP) + SADC Data Protection cooperation + AfCFTA Digital Protocol.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.