Cambodia Law on Electronic Commerce 2019
Cambodia's Law on Electronic Commerce of 2019, in force since May 2020: the only enacted Cambodian law with a general duty to protect personal information held electronically (Article 32, criminally penalised), alongside intermediary takedown and reporting duties, e-commerce licensing under Sub-Decree No. 134, consumer information and opt-out rules, and payment service duties. Cambodia has no personal data protection law yet; the draft Law on Personal Data Protection (July 2026 version) is pending and recorded, not built. Built from the Law's own articles.
Cambodia Law on Electronic Commerce 2019 is a compliance framework from Cambodia with 5 domains and 16 controls that map to 7 other frameworks. The largest domains are Chapter 6: Consumer protection and data protection – Cambodia Law on Electronic Commerce 2019 (6 controls), Chapter 5: Intermediaries and electronic commerce service providers – Cambodia Law on Electronic Commerce 2019 (4 controls), Chapter 9: Electronic payments and electronic funds transfers – Cambodia Law on Electronic Commerce 2019 (3 controls). Every control below carries what it requires and what an assessor expects to see.
Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (5)
Chapter 4: Secure electronic records and electronic signatures – Cambodia Law on Electronic Commerce 2019
| Code | Title |
|---|---|
| cambodia-law-on-electronic-commerce-2019::22 | Article 22: never use another person's identity, credentials or electronic signature without permission |
Chapter 5: Intermediaries and electronic commerce service providers – Cambodia Law on Electronic Commerce 2019
| Code | Title |
|---|---|
| cambodia-law-on-electronic-commerce-2019::25.1 | Article 25(1): on knowledge of unlawful information, remove it, preserve evidence and notify the Ministry |
| cambodia-law-on-electronic-commerce-2019::25.2-3 | Article 25(2) and (3): preserve and report suspicious facts, and carry out Ministry instructions |
| cambodia-law-on-electronic-commerce-2019::26 | Article 26: hold the e-commerce licence or permit and the online service certificate before operating |
| cambodia-law-on-electronic-commerce-2019::27 | Article 27: comply with the approved professional code of conduct for e-commerce |
Chapter 6: Consumer protection and data protection – Cambodia Law on Electronic Commerce 2019
| Code | Title |
|---|---|
| cambodia-law-on-electronic-commerce-2019::29 | Article 29: give consumers accurate, clear minimum information before an online sale |
| cambodia-law-on-electronic-commerce-2019::30 | Article 30: give an easy opt-out in every unsolicited commercial message |
| cambodia-law-on-electronic-commerce-2019::31 | Article 31: do not build counterfeit or confusing electronic systems or spread malicious code |
| cambodia-law-on-electronic-commerce-2019::32.1 | Article 32(1): protect personal information held electronically with reasonable security safeguards |
| cambodia-law-on-electronic-commerce-2019::32.2 | Article 32(2): never access, copy, leak, delete or alter data held by another person without permission |
| cambodia-law-on-electronic-commerce-2019::33 | Article 33: comply with consumer protection law in online dealings |
Chapter 9: Electronic payments and electronic funds transfers – Cambodia Law on Electronic Commerce 2019
| Code | Title |
|---|---|
| cambodia-law-on-electronic-commerce-2019::46.1 | Article 46(1): obtain National Bank of Cambodia authorisation before offering electronic payment services |
| cambodia-law-on-electronic-commerce-2019::47.1-2 | Article 47(1) and (2): no unsolicited payment instruments; identify and re-authenticate before each transfer |
| cambodia-law-on-electronic-commerce-2019::47.2-4 | Article 47(2) to (4) and 48: bear liability for unauthorised or faulty transfers and reimburse within 30 days |
Chapters 2 and 3: Validity of electronic communications and the communications process – Cambodia Law on Electronic Commerce 2019
| Code | Title |
|---|---|
| cambodia-law-on-electronic-commerce-2019::10 | Article 10: retain records electronically only in a form that meets the retention conditions |
| cambodia-law-on-electronic-commerce-2019::18 | Article 18: let a person correct or withdraw an input error made to an automated system |
Your Compliance Coverage
If you comply with Cambodia Law on Electronic Commerce 2019, you already cover:
GDPR
36%
13 controls mapped
Compare →ISO 27018:2019
6%
2 controls mapped
Compare →ISO 27001:2022
3%
1 controls mapped
Compare →+ 4 more: ISO 13485:2016 (3%), ISO 27701:2019 (3%)
See all 7 mapped frameworks ↓Maps to 7 other frameworks
Coverage is not the same as your position
This page shows what Cambodia Law on Electronic Commerce 2019 overlaps with in general. Where your organisation actually stands, against the standard you are going for and the certifications you already hold, is a different question. Same graph and the same recorded refutations, scoped to you rather than to a pair.
The Compliance Position Diagnostic, $5,000 fixed, ten business daysWhat is Cambodia Law on Electronic Commerce 2019 and who does it apply to?
Cambodia Law on Electronic Commerce 2019 is a compliance framework from Cambodia with 5 domains and 16 controls. Cambodia's Law on Electronic Commerce of 2019, in force since May 2020: the only enacted Cambodian law with a general duty to protect personal information held electronically (Article 32, criminally penalised), alongside intermediary takedown and reporting duties, e-commerce licensing under Sub-Decree No. 134, consumer information and opt-out rules, and payment service duties. Cambodia has no personal data protection law yet; the draft Law on Personal Data Protection (July 2026 version) is pending and recorded, not built. Built from the Law's own articles. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
What does Cambodia Law on Electronic Commerce 2019 actually require?
Cambodia Law on Electronic Commerce 2019 has 16 controls organised across 5 domains. The largest domains are Chapter 6: Consumer protection and data protection – Cambodia Law on Electronic Commerce 2019 (6 controls), Chapter 5: Intermediaries and electronic commerce service providers – Cambodia Law on Electronic Commerce 2019 (4 controls), Chapter 9: Electronic payments and electronic funds transfers – Cambodia Law on Electronic Commerce 2019 (3 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
If I already comply with another framework, how much of Cambodia Law on Electronic Commerce 2019 do I already cover?
Cambodia Law on Electronic Commerce 2019 maps to 7 other compliance frameworks. The top mapping partners are GDPR (36% coverage), ISO 27018:2019 (6% coverage), ISO 27001:2022 (3% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I implement Cambodia Law on Electronic Commerce 2019?
Start your Cambodia Law on Electronic Commerce 2019 compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Cambodia Law on Electronic Commerce 2019 requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 16 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 703 frameworks.
Get Started Free →Free forever — no credit card required