Does UK Data Protection Act 2018 — Automated Decision-Making require Human Oversight?

United Kingdom • enforcing

Yes — 1 provision

Requirements at a glance

This regulation imposes 4 specific requirements for Human Oversight across 1 provision:

Automated Decision-Making Rights (Article 22 UK GDPR) #

Obligation:
Human Oversight
enforcing
Effective:
May 25, 2018
Risk tier:
all
Scope:
deployers

Requirements

RequirementDetails
Right not to be subject to ADMIndividuals have the right not to be subject to decisions based solely on automated processing with legal or significant effects
Human reviewRight to obtain human intervention and contest automated decisions
ExplanationRight to meaningful information about the logic involved
Data Protection Impact AssessmentRequired when automated processing may result in high risk

Penalties

ViolationFine
Non-complianceUp to GBP 17.5M or 4% global turnover
View full regulation View obligation Obligation matrix