Source: OJ L 119, 4.5.2016, pp. 1–88Consolidated text

Current language: SV

Artikel 2 Materiellt tillämpningsområde


Summary What does Article 2 of the GDPR regulation say?

This article defines the material scope of the regulation — in other words, what types of processing activity it actually covers.

It establishes that the regulation applies to automated processing of personal data, as well as to manual processing where the data forms part of a structured filing system.

Critically, the article carves out several important exclusions, making clear that not all personal data processing falls under the GDPR.

It also clarifies the relationship between this regulation and other legal instruments, including a separate EU regulation governing data processing by EU institutions themselves, and the e-Commerce Directive.

Important points:

  • The regulation applies to you if you process personal data by automated means or within a structured filing system.
  • Four categories of processing are explicitly excluded: activities outside Union law, certain Member State activities under the TEU, purely personal or household activity, and processing by competent authorities for law enforcement purposes.
  • Processing by EU institutions and bodies falls under a separate regulation (EC) No 45/2001, not the GDPR directly.

Springlex's summary of the article is a reading aid, not a substitute for the legal text.

    1. Denna förordning ska tillämpas på sådan behandling av personuppgifter som helt eller delvis företas på automatisk väg samt på annan behandling än automatisk av personuppgifter som ingår i eller kommer att ingå i ett register.

    1. Denna förordning ska inte tillämpas på behandling av personuppgifter som

      1. utgör ett led i en verksamhet som inte omfattas av unionsrätten,

      2. medlemsstaterna utför när de bedriver verksamhet som omfattas av avdelning V kapitel 2 i EU-fördraget,

      3. en fysisk person utför som ett led i verksamhet av rent privat natur eller som har samband med hans eller hennes hushåll,

      4. behöriga myndigheter utför i syfte att förebygga, förhindra, utreda, avslöja eller lagföra brott eller verkställa straffrättsliga påföljder, i vilket även ingår att skydda mot samt förebygga och förhindra hot mot den allmänna säkerheten.

    1. Förordning (EG) nr 45/2001 är tillämplig på den behandling av personuppgifter som sker i EU:s institutioner, organ och byråer. Förordning (EG) nr 45/2001 och de av unionens övriga rättsakter som är tillämpliga på sådan behandling av personuppgifter ska anpassas till principerna och bestämmelserna i denna förordning i enlighet med artikel 98.

    1. Denna förordning påverkar inte tillämpningen av direktiv 2000/31/EG, särskilt bestämmelserna om tjänstelevererande mellanhänders ansvar i artiklarna 12–15 i det direktivet.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod