GDPR-29-01
Prohibition
29 — Processing under the authority of the controller or processor
Processor instruction compliance obligation
Description
The processor must not process personal data except on instructions from the controller, unless required to do so by Union or Member State law.
Full Analysis & Evidence Requirements
Sign in to view the full obligation text, AI-generated applicability analysis, evidence checklists, and compliance mapping.
Sign In to ViewRelated Obligations
Map this obligation to your AI systems
ReguLume automatically maps regulatory obligations to your system inventory, identifies compliance gaps, and generates remediation plans.
Get Started