Back to Frameworks

Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)

Poland
v2018 (GDPR implementation)
8 domains
8 controls

Poland's Act on Personal Data Protection of 2018 supplements the EU GDPR with national provisions. The President of the Personal Data Protection Office (UODO - Urząd Ochrony Danych Osobowych) oversees enforcement. The Act includes provisions on the age of digital consent (16 years - the maximum GDPR permits), certification bodies, accreditation, administrative fines for public bodies, and procedural rules for UODO. Poland also has sector-specific data protection provisions in telecommunications, banking, and healthcare legislation.

Unverified

Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.

Framework Domains (8)

Accountability Instruments

1 controls
Controls in the Accountability Instruments domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-4DPIA, Privacy by Design, Records of Processing

Breach and Enforcement

1 controls
Controls in the Breach and Enforcement domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-8Breach Notification, UODO (Urzad Ochrony Danych Osobowych) Inspections, Enforcement

Cross-Border Transfer

1 controls
Controls in the Cross-Border Transfer domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-6International Transfers

Governance and Lifecycle

1 controls
Controls in the Governance and Lifecycle domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-7DPO Designation, UODO (Urzad Ochrony Danych Osobowych) Cooperation, Retention, Marketing, Training

High-Risk Processing

1 controls
Controls in the High-Risk Processing domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-3Special Categories, Children, Employee Monitoring, Health Data

Individual Rights

1 controls
Controls in the Individual Rights domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-2Data Subject Rights Handling and Information Obligation

Scope and Lawful Basis

1 controls
Controls in the Scope and Lawful Basis domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-1GDPR Implementation Scope and Lawful Basis (Poland)

Security and Processor

1 controls
Controls in the Security and Processor domain of Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)1 controls
CodeTitle
POLAND-5Security of Processing and Processor Agreements

Frequently Asked Questions

What is Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018)?

Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) is a compliance framework from Poland with 8 domains and 8 controls. Poland's Act on Personal Data Protection of 2018 supplements the EU GDPR with national provisions. The President of the Personal Data Protection Office (UODO - Urząd Ochrony Danych Osobowych) oversees enforcement. The Act includes provisions on the age of digital consent (16 years - the maximum GDPR permits), certification bodies, accreditation, administrative fines for public bodies, and procedural rules for UODO. Poland also has sector-specific data protection provisions in telecommunications, banking, and healthcare legislation. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.

How many controls does Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) have?

Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) has 8 controls organised across 8 domains. The largest domains are Accountability Instruments (1 controls), Breach and Enforcement (1 controls), Cross-Border Transfer (1 controls). Each control defines specific requirements that organisations must implement to achieve compliance.

What frameworks does Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) map to?

Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) does not currently have cross-framework mappings in our system. Check back as we continuously expand our mapping database.

How do I get started with Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) compliance?

Start your Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Poland Act on Personal Data Protection (Ustawa o ochronie danych osobowych, 2018) requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 8 controls and track your progress.

Start Your Compliance Journey

Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 700 frameworks.

Get Started Free →

Free forever — no credit card required