Mauritius Data Protection Act 2017
The Mauritius Data Protection Act 2017 (replacing the 2004 Act) provides a comprehensive data protection framework aligned with international standards. The Data Protection Office under the Data Protection Commissioner supervises compliance. The Act establishes processing principles, individual rights, registration requirements, and provisions for cross-border data transfers. Mauritius holds EU adequacy recognition for certain sectors.
Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (6)
Part I - Preliminary
| Code | Title |
|---|---|
| Sec. 1 | Short Title and Commencement |
| Sec. 2 | Interpretation |
| Sec. 3 | Scope and Application |
| Sec. 4 | Exemptions |
| Sec. 6 | Establishment of the Commission |
Part II - Principles and Lawful Processing
| Code | Title |
|---|---|
| Sec. 20 | Purpose Limitation |
| Sec. 21 | Data Minimisation |
| Sec. 22 | Accuracy |
| Sec. 23 | Storage Limitation |
Part III - Rights of Data Subjects
| Code | Title |
|---|---|
| Sec. 37 | Financial Penalties |
| Sec. 38 | Right to Data Portability |
| Sec. 39 | Voluntary Undertakings |
| Sec. 40 | Right to Object |
| Sec. 41 | Administrative Fines |
| Sec. 42 | Automated Decision-Making |
Part IV - Obligations of Controllers and Processors
| Code | Title |
|---|---|
| Sec. 28 | Duty to Notify |
| Sec. 29 | Data Protection Council |
| Sec. 30 | Right to Information |
| Sec. 31 | Unauthorised Disclosure |
| Sec. 32 | Right of Access |
Part V - Transfer of Data Outside Mauritius
| Code | Title |
|---|---|
| Sec. 36 | Right to Erasure |
| Sec. 36A | Adequacy Assessment |
Part VI - Registration and Enforcement
| Code | Title |
|---|---|
| Sec. 44 | Intelligence Services Processing |
| Sec. 45 | Penalties |
| Sec. 49 | Exemptions |
| Sec. 53 | Offences and Penalties |
Maps to 534 other frameworks
Frequently Asked Questions
What is Mauritius Data Protection Act 2017?
Mauritius Data Protection Act 2017 is a compliance framework from Mauritius with 6 domains and 26 controls. The Mauritius Data Protection Act 2017 (replacing the 2004 Act) provides a comprehensive data protection framework aligned with international standards. The Data Protection Office under the Data Protection Commissioner supervises compliance. The Act establishes processing principles, individual rights, registration requirements, and provisions for cross-border data transfers. Mauritius holds EU adequacy recognition for certain sectors. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
How many controls does Mauritius Data Protection Act 2017 have?
Mauritius Data Protection Act 2017 has 26 controls organised across 6 domains. The largest domains are Part III - Rights of Data Subjects (6 controls), Part I - Preliminary (5 controls), Part IV - Obligations of Controllers and Processors (5 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
What frameworks does Mauritius Data Protection Act 2017 map to?
Mauritius Data Protection Act 2017 maps to 534 other compliance frameworks. The top mapping partners are Ethiopia Personal Data Protection Proclamation (No. 1321/2024) (50% coverage), Tunisia Organic Law on Personal Data Protection (Law No. 2004-63) (50% coverage), Estonia Personal Data Protection Act (Isikuandmete kaitse seadus, 2019) (50% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I get started with Mauritius Data Protection Act 2017 compliance?
Start your Mauritius Data Protection Act 2017 compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Mauritius Data Protection Act 2017 requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 26 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 692 frameworks.
Get Started Free →Free forever — no credit card required