{"id":680,"date":"2018-08-24T18:36:57","date_gmt":"2018-08-24T16:36:57","guid":{"rendered":"http:\/\/blog.eprivacy.eu\/?p=680"},"modified":"2020-12-12T18:37:39","modified_gmt":"2020-12-12T17:37:39","slug":"what-has-to-be-considered-when-dealing-with-inquiries-from-data-subjects","status":"publish","type":"post","link":"https:\/\/blog.eprivacy.eu\/?p=680","title":{"rendered":"What has to be considered when dealing with inquiries from data subjects?"},"content":{"rendered":"\n<p>Some of you have already received some: inquiries from data subjects who would like&nbsp;to know what personal data your company has stored about them, have their data&nbsp;deleted or assert other data subjects&#8216; rights. Articles 13 to 21 of the GDPR&nbsp;deal with this matter, from the&nbsp;<a href=\"https:\/\/www.eprivacy.eu\/en\/glossary\/eu-general-data-protection-regulation\/article-15\/\" target=\"_blank\" rel=\"noreferrer noopener\">right of&nbsp;information<\/a>to the&nbsp;<a href=\"https:\/\/www.eprivacy.eu\/en\/glossary\/eu-general-data-protection-regulation\/article-17\/\" target=\"_blank\" rel=\"noreferrer noopener\">&#8222;right to be forgotten&#8220; (erasure)<\/a>and the&nbsp;<a href=\"https:\/\/www.eprivacy.eu\/en\/glossary\/eu-general-data-protection-regulation\/article-21\/\" target=\"_blank\" rel=\"noreferrer noopener\">right to object (&#8222;opt-out&#8220;)<\/a>. Here are the five most important to-do&#8217;s&nbsp;you should consider when dealing with inquiries from data subjects:<\/p>\n\n\n\n<ol><li>Respond to the request within the legal period of 30 days. Failure to respond to an inquiry may result in a fine.<\/li><li>Sensitize all employees so that they know what to do when confronted with requests from data subjects.<\/li><li>Develop a process for responding to requests from data subjects at an early stage. A concept for the rights of the data subjects might be helpful in this matter.<\/li><li>Implement a procedure to verify the identity of the person concerned and check in advance to what extent your company is obliged to provide the requested information.<\/li><li>Check whether deletion requests conflict with legal retention obligations. In this case, you will have to answer, but you can reject such requests with a good reason.<\/li><\/ol>\n\n\n\n<p>ePrivacy provides a&nbsp;checklist&nbsp;about the most important to-do&#8217;s in dealing with the rights of the data subjects&nbsp;&#8211; please&nbsp;<a href=\"https:\/\/www.eprivacy.eu\/en\/contact\/\" target=\"_blank\" rel=\"noreferrer noopener\">contact us<\/a>&nbsp;for further advice.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Some of you have already received some: inquiries from data subjects who would like&nbsp;to know what personal data your company has stored<\/p>\n<p class=\"link-more\"><a class=\"myButt \" href=\"https:\/\/blog.eprivacy.eu\/?p=680\">Read More<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=\/wp\/v2\/posts\/680"}],"collection":[{"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=680"}],"version-history":[{"count":1,"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=\/wp\/v2\/posts\/680\/revisions"}],"predecessor-version":[{"id":681,"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=\/wp\/v2\/posts\/680\/revisions\/681"}],"wp:attachment":[{"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=680"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=680"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.eprivacy.eu\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=680"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}