GDPR
Statute
European Union / United Kingdom
· 2016
The General Data Protection Regulation is the EU's comprehensive data-protection law (retained in the UK as the UK GDPR), governing how personal data is processed, consented to, and ported. It is the privacy backbone beneath open banking; the lawful-basis, consent, and data-minimization requirements that any account-data-sharing regime must satisfy, and a right to data portability that predates and reinforces open banking.
Horizontal regime. It binds companies by what they do with data, software or
customers, not by the sector they sit in. The industries below are where it creates
specific, additional duties — not the limit of who has to comply.
Countries
Where this binds. Each links to the providers apis.io has catalogued there.
Industries
Each links to that industry as a scored cohort — so the question "how ready is this sector for the regime that governs it?" becomes one you can actually look at.