Glossaire/Data Controller
GDPR Art. 4(7)

Data Controller

The entity that determines the purposes and means of processing personal data.

A data controller is any natural or legal person, authority, agency, or body that, alone or jointly, determines the purposes and means of processing personal data. Under GDPR, controllers bear the primary legal responsibility for compliance.

As a SaaS or e-commerce business collecting user data, you are almost always a data controller. This means you are responsible for ensuring your data practices comply with GDPR, obtaining valid consent, honoring data subject rights, and signing DPAs with your processors.

Joint controllers — where two or more entities jointly determine the purposes of processing — must establish a transparent arrangement defining their respective responsibilities.

Mettre en pratique

Générez une politique GDPR Art. 4(7) en 60 secondes

Notre IA rédige des politiques de confidentialité, des conditions d'utilisation et des politiques de cookies qui couvrent les exigences GDPR Art. 4(7) — adaptées à votre entreprise.