Access to public documents containing personal data
Analysis of the EDPS on a consultation related to a request for access to public documents containing personal data
Regulation (EU) 2018/1725 lays down the data protection obligations for the EU institutions, bodies and agencies when they process personal data and develop new policies. This regulation also defines the obligations of the EDPS, including his role as an independent supervisory authority of EU institutions and bodies when they process personal data, and to advise on policies and legislation which affect privacy and cooperate with similar authorities to ensure consistent data protection.
Analysis of the EDPS on a consultation related to a request for access to public documents containing personal data
Opinion of 3 September 2008 on a notification for prior checking on "Dosimetry management system of radiological workers at JRC-IE in Petten" (Case 2008-020)
Answer to a notification for prior checking concerning the "access control to the premises" (Case 2008-195)
Opinion of 31 July 2008 on a notification for prior checking on the Security investigations at Joint Research Centre ISPRA (Case 2007-507)
The Security Service of JRC Ispra C7 performs investigations related to security related incidents such as traffic accidents, vandalism theft, unauthorised access, etc. in the context of which personal data are processed. The outcome of the investigation is reflected in a report describing the occurrence. This prior check analyses whether this data processing is in line with Regulation (EC) No 45/2001. The Opinion concludes by giving some recommendations to data controller towards ensuring full compliance with Regulation (EC) No 45/2001. Among others, the EDPS suggests amending the privacy statement and setting up a procedure to give the privacy statement directly to individuals, confirming the competences of the Security Service of JRC to perform investigations, etc.