综合一区欧美国产,99国产麻豆免费精品,九九精品黄色录像,亚洲激情青青草,久久亚洲熟妇熟,中文字幕av在线播放,国产一区二区卡,九九久久国产精品,久久精品视频免费

Global EditionASIA 中文雙語(yǔ)Fran?ais
China
Home / China / Society

Framework to secure overseas information transfers

By ZOU SHUO | China Daily | Updated: 2025-10-22 09:09
Share
Share - WeChat

China has introduced a certification program to regulate the transfer of personal information overseas, aiming to bolster data security while facilitating cross-border flows under a clearer legal framework. The rules will take effect on Jan 1.

The Cyberspace Administration of China, the country's top internet regulator, and the State Administration for Market Regulation jointly released the measures on Friday, outlining requirements for entities that send personal data abroad.

According to an official with the CAC, the program provides a legal pathway for data exporters that complies with national certification standards, as stipulated in the Personal Information Protection Law.

The certification applies to personal information processors that are not critical information infrastructure operators. It covers those who, since the start of a calendar year, have transferred non-sensitive personal data of between 100,000 and fewer than 1 million individuals, or sensitive personal data of fewer than 10,000 people. Important data is excluded.

The measures explicitly prohibit data processors from splitting large data transfers into smaller batches to avoid mandatory security assessments.

Under the new framework, data processors must submit applications to accredited certification bodies. Each certificate will be valid for three years.

Certifying institutions are required to upload certification details to a national public service platform for certification accreditation.

If a certified entity is found to have discrepancies between its actual data exports and the scope of its certification, or no longer meets certification criteria, the institution may suspend or revoke the certificate. Any violations of laws or regulations related to data exports must be promptly reported to regulators.

Certification bodies must also file records with the CAC within 10 working days after being accredited. Both the CAC and the State Administration for Market Regulation will oversee certification activities.

Provincial-level or higher cyberspace authorities and relevant departments may summon certified data processors for discussions if major risks or data security incidents are detected.

Top
BACK TO THE TOP
English
Copyright 1994 - . All rights reserved. The content (including but not limited to text, photo, multimedia information, etc) published in this site belongs to China Daily Information Co (CDIC). Without written authorization from CDIC, such content shall not be republished or used in any form. Note: Browsers with 1024*768 or higher resolution are suggested for this site.
License for publishing multimedia online 0108263

Registration Number: 130349
FOLLOW US
 
大名县| 大安市| 新田县| 洛南县| 祥云县| 顺义区| 吉林省| 龙门县| 云南省| 和平县| 泾阳县| 德化县| 锦州市| 林周县| 肃南| 崇义县| 宣恩县| 马尔康县| 怀化市| 南溪县| 西藏| 峨山| 六枝特区| 景德镇市| 龙南县| 舟曲县| 安仁县| 宜君县| 安康市| 丹棱县| 凤凰县| 鸡西市| 临颍县| 霍山县| 光山县| 六枝特区| 开化县| 册亨县| 大宁县| 应用必备| 高碑店市|