Management → business-foundations
GDPR
A European Union data-protection regulation governing lawful processing, transparency, individual rights, security, and accountability.
Motivation
A European Union data-protection regulation governing lawful processing, transparency, individual rights, security, and accountability.
Where it fits
This concept provides a shared vocabulary for designing, documenting, measuring, or operating software systems.
Mental model
Treat it as a structured tool: define the question being answered, use consistent terminology, and connect the result to decisions and follow-up work.
Practical use
Engineering implications include data minimization, lawful basis, consent where applicable, retention, deletion, access rights, breach response, processors, and cross-border transfers.
Common mistakes
- Using ambiguous definitions or units.
- Collecting or documenting information without connecting it to a decision.
- Failing to keep the artifact or measurement current as the system changes.
Related concepts
See the linked concepts in the knowledge graph for prerequisites and adjacent practices.