Eight principles of ‘good information handling’ – data must be:
processed fairly and lawfully;
processed for limited purposes;
adequate, relevant and not excessive;
accurate not kept longer than necessary;
processed in accordance with the data subject's rights;
kept secure ;
not transferred to countries without adequate protection
|
|