Source: OJ L, 2025/2050, 9.10.2025

Current language: FR

Article 4 Rôles et responsabilités en matière de traitement des données à caractère personnel sur le portail pour l’accès aux données en vertu du DSA


Summary What does Article 4 of the Data access for vetted researchers say?

This article establishes the data protection roles of the key actors involved in the DSA data access portal.

It draws a clear distinction between Digital Services Coordinators, who act as independent controllers of personal data in managing the data access process, and the Commission, which acts only as a processor of personal data within the portal.

This distinction is significant in the context of EU data protection law, as it determines who bears ultimate responsibility for how personal data is used versus who merely handles it on another party's behalf.

Important points:

  • Digital Services Coordinators are designated as separate controllers for personal data processed in managing the data access process and publishing relevant information.
  • The Commission is designated as a processor of personal data within the DSA data access portal, not a controller.
  • The Commission's specific responsibilities as processor are defined in the Annex to the regulation.

Springlex's summary of the article is a reading aid, not a substitute for the legal text.

    1. Les coordinateurs pour les services numériques sont considérés comme des responsables du traitement distincts en ce qui concerne le traitement des données à caractère personnel qu’ils effectuent aux fins de la gestion du processus d’accès aux données et de la publication des informations pertinentes.

    1. La Commission est considérée comme un sous-traitant des données à caractère personnel traitées dans le cadre du portail pour l’accès aux données en vertu du DSA.

    1. Les responsabilités de la Commission en tant que sous-traitant pour les activités de traitement des données menées dans le cadre du portail pour l’accès aux données en vertu du DSA sont définies à l’annexe.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod