Definition #
The adaptation of General Data Protection Regulation (GDPR) requirements to govern AI systems, focusing on data privacy, consent, and explainability for automated decision-making.
Key Characteristics #
- Right to explanation (Article 22)
- Data minimization for training sets
- Automated decision opt-out mechanisms
- 72-hour breach notification rules
Why It Matters #
Non-compliance risks fines up to 4% of global revenue. Affects any global company processing EU data—89% of Fortune 500s now have GDPR-for-AI protocols (IAPP, 2023).
Common Use Cases #
- Chatbot user data handling
- AI-driven credit scoring systems
- Healthcare predictive analytics
Examples #
- OneTrust GDPR Compliance for AI
- Microsoft Privacy Risk Assessment
- GDPR-compliant synthetic data tools
FAQs #
Q: Does GDPR ban AI?
A: No—it requires transparency (e.g., informing users when AI makes decisions affecting them).
Q: How to anonymize training data?
A: Techniques like k-anonymity and differential privacy are GDPR-approved.