From 4a82b61bdc80cf37c824525abe1be58baa5efeda Mon Sep 17 00:00:00 2001 From: Yuli Date: Thu, 2 Jul 2020 16:46:22 +0300 Subject: [PATCH] Add GDPR description for each section --- ui/site/admin-privacy-settings.html | 35 ++++++++++++++++++++++++----- 1 file changed, 30 insertions(+), 5 deletions(-) diff --git a/ui/site/admin-privacy-settings.html b/ui/site/admin-privacy-settings.html index 09a3dc3..f2ab2ca 100644 --- a/ui/site/admin-privacy-settings.html +++ b/ui/site/admin-privacy-settings.html @@ -218,6 +218,10 @@ .bootstrap-table .fixed-table-body table.table tbody tr td { vertical-align:top; } + h4 {display:inline-block; } + .bigblock a.btn { + margin-top:-5px; + } @@ -244,8 +248,16 @@
-

Processing Activities Configuration

-

A list of all Processing Activities.

+

Processing Activities Configuration

   +
+

Processing is GDPR means any operation or set of operations which is performed on personal data or on sets of personal data, + whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, + retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, + restriction, erasure or destruction.

+

Under GDPR, organizations must process personal data lawfully, fairly, and transparently. To comply this principle, + Chapter 6 of the GDPR requires any organization processing personal data to have a valid legal basis for that personal data + processing activity. For example Consent is one of the six allowed methods.

+
@@ -256,12 +268,25 @@
-

Legal Basis Configuration

-

A list of all Legal Basis objects.

+

Legal Basis Configuration

   +
+

The legal basis is the foundation for data processing under the GDPR. It means that if an organisation wants + to process personal data, there is a need to identify specific legal grounds for the processing. There are six options:

+

    +
  1. Consent - like in cookie consent. In GDPR Article 4(11) consent is defined as : any freely given, specific, + informed and unambiguous indication of the data subject's wishes by which he or she, by a statement or by a clear affirmative action, + signifies agreement to the processing of personal data relating to him or her.
  2. +
  3. Contract - in case you use contract with you customers.
  4. +
  5. Legitimate Interest - for example use of personal data for fraud detection.
  6. +
  7. Vital Interest - for example in emergency medical care situations.
  8. +
  9. Legal Requirements - for example comlianace with money anti-laundering laws, taxes, etc...
  10. +
  11. Public Interest - processing required for public interest.
  12. +
+
- +
BriefLegal Basis Brief Type Description Actions