GDPR

Da MoodleDocs.
Attenzione: Pagina in costruzione


Panoramica

GDPR è l’acronimo di General Data Protection Regulation (Regolamento generale sulla protezione dei dati) e si riferisce al regolamento dell’Unione Europea per la protezione dei dati personali di tutti gli individui che ne fanno parte. Il regolamento (Regolamento (UE) 2016/679)2 è entrato in vigore il 25 Maggio 2018, andando a sostituire i contenuti della direttiva sulla protezione dei dati (ufficialmente Direttiva 95/46/CE)3 del 1995.

Template:New features

Overview of GDPR features


Who does it affect?

Any individual or organisation that stores or processes personal information on an identifiable person from an EU member state (regardless if the processing or storage of information occurs in the EU or not). It also applies if the individual or organisation themselves is located in an EU member state.

What kind of information comprises personal data in a Moodle site?

It is all information that can be associated with a natural person. Each user account and all the activity associated with that user account is classified as personal information. This also extends to associated information such as web server log files.

How is Moodle HQ assisting with GDPR compliance?

Earlier this year we reached out to the community through our forums and social media to gauge the needs of different organisations on how they would need to comply with GDPR. We received direct input from a number of Moodle institutions, our Moodle Partner network and developers.

We developed a set of features (made available in Moodle 3.5 and through plugins and some minimal changes to core, for Moodle 3.3 and 3.4) which will assist Moodle sites meeting GDPR compliance needs. The features cover the following areas:

  • Onboarding of new users, including; age and location check to identify minors, versioning of privacy policies and the tracking of user consents;
  • Handling of subject access requests and erasure requests, and maintaining a data registry.

Find out more about the approach we took.

Important note: Installing the developed plugins alone will not be enough to meet the GDPR requirements. Correct configuration and implementation of the required processes and procedures is also required.

We at Moodle HQ highly recommend that you also engage your IT and legal departments on what is required for GDPR compliance.

GDPR plugins

Plugins Policies plugin and Data privacy plugin are included in standard distribution of Moodle 3.5 .

Moodle & GDPR for plugin developers

If you are a plugin developer, we recommend the following actions to assist you in preparing your Moodle plugin for GDPR:

Moodle & GDPR for Educators & Learners

If you are an educator or a learner and would like to find out more about your rights under GDPR and how features in Moodle can assist with protecting your data privacy, we recommend you:

  • Check in with your system administrators for information specific to your institution or organisation;
  • Read more information on GDPR in the “See also” section below.

Latest News & Updates

See also

References: