Certifieringsmekanismer samt sigill och märkningar för dataskydd

Certifiering är ett valfritt verktyg som organisationer kan använda för att säkerställa och påvisa efterlevnad av den allmänna dataskyddsförordningen.
Detta register ger en översikt över befintliga certifieringsmekanismer och sigill/märkningar för dataskydd som utfärdats av behöriga dataskyddsmyndigheter efter ett yttrande från EDPB (artikel 42.5 och 42.8 i den allmänna dataskyddsförordningen), även när detta motsvarar ett europeiskt sigill för dataskydd.
Där anges även de godkända kraven för ackreditering av certifieringsorgan (artikel 43.3 i den allmänna dataskyddsförordningen).

  • 15 poster
Filter on
Filter on comptent SA
Filter on type
Filter on scheme owner
Filter on type of criteria

Trusted Site Data Privacy Criteria Catalogue for Inspecting the Conformity of an IT Solution with the European General Data Protection Regulation

de/ldi nrw
Scheme owner
TÜV NORD CERT GmbH
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers and processors

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • Trusted Site Data Privacy Criteria Catalogue for Inspecting the Conformity of an IT Solution with the European General Data Protection Regulation Version 2.12 from 19.03.2025
Date of national decision
Relevant topics

Lexing GDPR certification

Scheme owner
Lexing
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  1. Lexing GDPR certification criteria V.4.1.pdf
  2. Annex 5 Concordance table between GDPR articles and Lexing certification criteria V02.1.pdf

BDO Austria GmbH Certification Criteria

Scheme owner
BDO Austria GmbH
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers and processors

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  1. Certification Criteria_BDO Consulting GmbH_V3.8_EN
  2. BDO Application Form and ToE - Version 1.2 EN

BC 5701:2024

Scheme owner
Brand Compliance B.V.
Scope

Generic

Type of criteria
EU Data Protection Seal
Applicability of the scheme

Data controllers and processors

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • GDPR Certification Standard and Criteria, BC 5701:2024, Version 0.7

DSGVO-information privacy standard

de/hb
Scheme owner
Datenschutz cert GmbH
Scope

IT-supported processing operations

Type of criteria
National certification criteria
Applicability of the scheme

Data controllers and processors in Germany

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • Catalogue of Criteria for the Certification of IT-supported Processing of Personal Data pursuant to Art. 42 GDPR (‘GDPR – information privacy standard’), Version 0.9.7

DSGVO-zt GmbH Certification criteria

Scheme owner
DSGVO-zt GmbH
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • Certification criteria Basic module, Version 1.5
  • Annex I to the General Certification Criteria concerning the TOMs – Technical and Organisational Measures, Version 1.3 
  • Attachment to Annex I to the General Certification Criteria concerning the TOMs – Technical and Organisational Measures Certification requirements, Version 1.3

EuroPriSe European Privacy Seal

de/ldi nrw
Scheme owner
EuroPriSe Cert GmbH
Scope

Certification of processing operations by processors in accordance with the GDPR using the EuroPriSe method

Type of criteria
EU Data Protection Seal
Applicability of the scheme

Data Processors

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • Krit_Katalog_Verarbeitungsvorgange von AV_EU_EN_v1_5

AUDITOR conformity assessment

de/ldi nrw
Scheme owner
Competence Centre Trusted Cloud e.V.
Scope

Certification of data processing operations conducted by a cloud service provider as processor pursuant to Article 28 GDPR, as well as limited processing operations conducted by a cloud service provider as controller

Type of criteria
National certification criteria
Applicability of the scheme

Data Processors

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • 01_AUDITOR ACC v_0.99_f_03.02.24_clean.docx
  • 04_Certification Object_v0.99_c.docx

BC5701:2023

Scheme owner
Brand Compliance B.V.
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers and processors within the Netherlands

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB

Certification standard BC 5701:2022 versie 1.2

 

GDPR-CARPA

lu
Scheme owner
LU SA
Scope

Any type of processing except:

personal data processing operations specifically targeting minors under 16 years old,
processing operations in the context of a joint controllership,
processing operations in the context of article 10 GDPR, except those that are clearly defined and regulated by Luxembourgish or European Laws and for which the CNPD is the competent supervisory authority (e.g. Loi du 1er août 2018 relative à la protection des personnes physiques à l’égard du traitement des données à caractère personnel en matière pénale ainsi qu’en matière de sécurité nationale),
processing operations of entities that have not officially designated a DPO* (article 37 GDPR). 

Type of criteria
National certification criteria
Applicability of the scheme

controllers and processors established in Luxembourg

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • LU SA – GDPR-CARPA Certification criteria-1.docx