Skip to content
GDPR Summary GDPR Information online

GDPR Information

For businesses

  • Home
  • SummaryExpand
    • Principles
    • Definitions
    • Personal Data Breaches
  • AgreementsExpand
    • Data Processing Agreement
    • Privacy Policy
    • Internal Routines
    • Records of Processing Activites
  • RolesExpand
    • Controller
    • Processor
  • Guides
  • BlogExpand
    • News
    • Articles
    • Information
    • Legal Bases
GDPR Summary GDPR Information online
GDPR Information
For businesses

Definitions in Article 4 of GDPR

Glossary of important definitions in article 4 of GDPR

It is important that companies that process personal data belonging to EU citizens are aware of the definitions stated in Article 4 of GDPR. This GDPR Glossary in English contains a compilation of key Definitions in Article 4 of GDPR. It is important to know the meaning of these key definitions, in order to act correctly according to the regulation. That is why we have compiled this description of central definitions.

However, keep in mind that Article 4 of the GDPR provides the complete version of the definitions.

Definitions in Article 4 of GDPR GDPR information online
Personal Data

All data that, directly or indirectly, alone or together with other data, can be linked to a physically living person, is personal data according to the GDPR.

Common examples of personal data are: name, telephone number, address, e-mail address, user ID, credit card number, registration number of a vehicle, IP address, etc.

Data Subject

The person who can be identified through the personal data, is according to GDPR called a data subject. The data subject is therefore always a natural living person. 

According to the GDPR, data subjects have different rights regarding their personal data. For instance, the right to restrict processing and the right to  access.

Processing

Everything that is done with or to personal data, automated or otherwise, is a form of processing. For example, processing can take place through a single measure or through a combination of different measures.

Examples of common processing of personal data are: storage, deletion, sharing, loading, registration, copying, collection, organization, use, adjustment, destruction, etc.

Profiling

Profiling is a way of processing personal data through various automatic treatments and processes. For example, in order to assess different personal characteristics of an individual. For instance, to analyze a natural person’s health, finances, behavior, preferences, interests, place of residence, etc.

Register

Personal information may be collected and structured in a register for various reasons. 

For example, it is common for companies to keep a register of their customers or employees in a financial system or CRM system.

Pseudonymisation

Pseudonymisation means that personal data are processed in a way that the data can not identify a natural person in it self. It can only be made with additional data, that is stored in another place. And it be done through various technical and organizational security measures.

Third Party

Third party means someone other than, the personal data controller (and the persons who are authorized to process the personal data), the data subject or the personal data controller (and other persons who are authorized to process the personal data). 

A third party may be a legal person or a natural person, institution, authority or other body, for instance.

Personal Data Controller

According to the GDPR, anyone who determines the purpose of a certain processing of personal data and how the processing is to take place, is to be regarded as the Personal Data Controller.

For example, natural persons, legal persons, authorities, institutions or other bodies may be personal data controllers.

Personal Data Processor

Anyone who processes personal data on behalf of a personal data controller, according to the data controller’s instructions, is a personal data processor.  Common examples of personal data processors are accounting consultants and web developers.

Natural persons, legal persons, authorities, institutions or other bodies may be personal data processors, for instance.

Consent

Consent is one of the six (6) legal bases that exist under the GDPR. A person may give a voluntary express consent for the personal data to be processed for a specific stated purpose. A given consent can be revoked at any time.

It should be noted that consents given in cases where there is a power relationship, by a person in an inferior position, are not valid under the GDPR. For example, the relationship between and employer and its employees. 

Personal Data Breach

Personal data breaches can occur in different ways. According to the GDPR, a personal data breach means a security incident, that has caused the processed personal data to be destroyed, lost, altered or obtained by an unauthorized person. 

A breach can be seen intentionally or unintentionally. For example through negligence or due to crime (data breach, etc.).

Supervisory Authority

Supervisory authorities are independent public authorities. Each EU country has designated its own regulatory authority to handle GDPR-related matters.

In some cases, a personal data breach must be registered to different supervisory authorities in different countries.

News about GDPR and reviews from supervisory authorities

In addition to this GDPR glossary, you can also read about various news about the GDPR on this website. For example, audits carried out by Supervisory Authorities and sanction fees that they distribute. By learning from mistakes from others, it is possible to avoid making similar mistakes yourself. In addition, you can also find information that is important and good to know as an entrepreneur, as well as guides.

News
Information GDPR summary online Download GDPR Guides for free

Summary of the GDPR for Companies, Entrepreneurs and Businesses

There is a lot of information about the GDPR that is important for companies, entrepreneurs and businesses to know about. We have therefore written a GDPR Summary and mention various key elements. Therefore, we are able to provide an overview of the GDPR, what it means and what companies must do to comply with the EU regulation.

Read the summary

Links

Home

GDPR Summary

Agreements for companies 

Free GDPR Guides 

 

 

Popular Subjects

Who can be a Controller? 

Who shall breaches be reported to?

Data Protection Principles

EDPB Guide 

GDPR Summary GDPR Information online
www.GDPRINFORMATION.com

© 2025 GDPR Information

Scroll to top
The website uses cookies
We would like to use Google's analytics cookies, to be able to analyze how the website is used and to publish more relevant content. When you click on "Accept", we have the right to collect unidentified information about your use of this website and your device. You have the right to withdraw your consent at any time. By clicking on "Accept", you agree to the use of Google's analytics cookies. However, you can visit the settings to provide customized consent. Read more in our cookiepolicySettingsAccept
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously. Necessary cookies are placed automatically and do not require your consent.
CookieDurationDescription
cookielawinfo-checbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
CookieDurationDescription
_ga2 yearsThis cookie is installed by Google Analytics. The cookie is used to calculate visitor, session, campaign data and keep track of site usage for the site's analytics report. The cookies store information anonymously and assign a randomly generated number to identify unique visitors.
_gat_gtag_UA_137823009_51 minuteThis cookie is set by Google and is used to distinguish users.
_gid1 dayThis cookie is installed by Google Analytics. The cookie is used to store information of how visitors use a website and helps in creating an analytics report of how the website is doing. The data collected including the number visitors, the source where they have come from, and the pages visted in an anonymous form.
Save & Accept
  • Home
  • Summary
    • Principles
    • Definitions
    • Personal Data Breaches
  • Agreements
    • Data Processing Agreement
    • Privacy Policy
    • Internal Routines
    • Records of Processing Activites
  • Roles
    • Controller
    • Processor
  • Guides
  • Blog
    • News
    • Articles
    • Information
    • Legal Bases