EU Institutions Data Protection Regulation
Proposal for a REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL on the protection of individuals with regard to the processing of personal data by the Union institutions, bodies, offices and agencies and on the free movement of such data, and repealing Regulation (EC) No 45/2001 and Decision No 1247/2002/EC
- Stage
- In force
- In force
- In force since 11 Dec 2018 · CELEX 32018R1725
- Procedure
- Regulation
- Last activity
- 23 Oct 2018
Delegated and implementing acts beneath it
By status: 1 planned, 1 published.
| Act | Kind | Status | Adoption |
|---|---|---|---|
| Standard contractual clauses for the transfer of personal data to third countries by EU institutions and bodies | Implementing · Decision | Planned | Q2 2027 |
| Commission Implementing Decision (EU) 2021/915 | Implementing · Decision | Published |
Titles link to EUR-Lex where the act has been published.
Summary
GeneratedThis regulation aligns data protection rules for EU institutions, bodies, offices, and agencies with the GDPR, ensuring consistent individual rights and free data movement. It affects all EU institutions, their staff, and individuals whose data they process. The regulation entered into force and applies from December 11, 2019, replacing the 2001 Regulation and 2002 Decision.
What the workspace adds on this file
Everything above is the public record. Subscribers see this page with their own layer on top.
Why it matters to you
What moved
Your contacts on it
A first draft
Sources: EUR-Lex. Record as of 14 Sept 2026. Something wrong on this page? Report an error.
Request access
See this file with your own layer on top: why it matters to you, your contacts on it and a first draft. We’ll schedule a 20-minute walkthrough.
EU-hosted · GDPR-compliant · Trust Center →
By submitting, you agree to our privacy policy.