Skip to content Skip to sidebar Skip to footer

EDPB Guidelines for Controllers and Processors in the Event of Requests from Third Countries

On 4 June 2025, the European Data Protection Board (hereinafter, "EDPB") adopted the final version of Guidelines 02/2024 on Article 48 of the GDPR (hereinafter, the "EDPB Guidelines"). The purpose of the EDPB Guidelines is to clarify the scope of Article 48 of the GDPR โ€“ which governs the limits on the recognition and enforcement of judicial or administrative decisions from third countries requiring the transfer of personal data โ€“ in order to provide practical mechanisms for companies called upon to respond to requests for the transfer or disclosure of personal data from authorities of third countries.

New Standard Contractual Clauses for the data transfers from China

The long-awaited final version of the Standard Contractual Clauses for the Cross-Border Data Transfers from China (the "Chinese SCCs") was finally published on February 24, 2023, by the Cyberspace Administration of China ("CAC") through the Measures for Standard Contracts for Transferring Personal Information Overseas (the "Measures") forcing companies to act promptly.ย