Biometric personal data, defined as data characterising physiological and biological features that allow identification of the data subject, may only be processed with the written consent of the data subject, except in cases listed by law. Operators that process biometric data are subject to additional security requirements.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.