Source: OJ L, 2025/2050, 9.10.2025

Current language: SV

Artikel 12 Förfaranden för behandling av begäranden om ändring


Summary What does Article 12 of the Data access for vetted researchers say?

This article governs how the Digital Services Coordinator of establishment handles amendment requests — that is, requests submitted by data providers seeking to modify a reasoned request.

It builds directly on Article 7, which covers the formulation of reasoned requests, by establishing the criteria and process the Digital Services Coordinator must follow once a data provider pushes back.

The article sets out two distinct assessment tracks depending on the grounds of the amendment request: one focused on whether a data provider genuinely lacks access to the requested data, and another focused on whether the access modalities pose significant vulnerabilities to the data provider's services.

In both cases, the Digital Services Coordinator retains the ability to seek further information from either the data provider or the principal researcher, though this cannot extend the statutory decision deadline.

Important points:

  • The Digital Services Coordinator of establishment is required to notify the principal researcher as soon as an amendment request is received.
  • The Digital Services Coordinator of establishment assesses amendment requests against specific criteria depending on whether the grounds concern lack of access to data or alleged security vulnerabilities.
  • The Digital Services Coordinator of establishment must make its decision within the statutory deadline regardless of whether the data provider or principal researcher has fully responded to any request for additional information.

Springlex's summary of the article is a reading aid, not a substitute for the legal text.

    1. Efter mottagandet av en begäran om ändring i enlighet med artikel 40.5 i förordning (EU) 2022/2065 ska samordnaren för digitala tjänster i etableringslandet informera den berörda huvudforskaren.

    1. Vid beslut om en begäran om ändring enligt artikel 40.5 a i förordning (EU) 2022/2065 ska samordnaren för digitala tjänster i etableringslandet beakta följande:

      1. Huruvida skälen till den påstådda bristen på åtkomst till data är vederbörligen motiverade.

      2. Huruvida denna brist på åtkomst till data är permanent eller tillfällig.

    1. Vid beslut om en begäran om ändring enligt artikel 40.5 b i förordning (EU) 2022/2065 ska samordnaren för digitala tjänster i etableringslandet beakta följande:

      1. Huruvida de påstådda sårbarheterna och deras betydelse är vederbörligen motiverade.

      2. Sannolikheten för och allvaret i den skada som orsakas av dessa påstådda betydande sårbarheter.

      3. I vilken utsträckning de åtkomstsätt som anges i den motiverade begäran effektivt minskar risken för att sådan skada uppstår.

    1. När som helst under bedömningen av en begäran om ändring får samordnaren för digitala tjänster i etableringslandet be dataleverantören eller huvudforskaren om all ytterligare information som samordnaren anser nödvändig för att slutföra sin bedömning.

    1. En sådan begäran om ytterligare information ska göras så snart som möjligt för att ge dataleverantören eller huvudforskaren tillräckligt med tid för att svara och ska under inga omständigheter påverka den tidsfrist som anges i artikel 40.6 andra stycket i förordning (EU) 2022/2065. Om dataleverantören eller huvudforskaren underlåter att tillhandahålla den begärda informationen helt eller inom en period som anges av samordnaren för digitala tjänster i etableringslandet eller tillhandahåller ofullständig information ska samordnaren för digitala tjänster i etableringslandet fatta sitt beslut inom den tidsfrist som fastställs i artikel 40.6 i förordning (EU) 2022/2065, på grundval av den information som gjordes tillgänglig för samordnaren inom en rimlig tidsfrist.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod