Skip to main content
GDPRRegulation (EU) 2016/679

Definition: cross-border processing: cross-border processing

GDPR Art. 4 (cross-border processing)

either: (a) processing of personal data which takes place in the context of the activities of establishments in more than one Member State of a controller or processor in the Union where the controller or processor is established in more than one Member State; or (b) processing of personal data which takes place in the context of the activities of a single establishment of a controller or processor in the Union but which substantially affects or is likely to substantially affect data subjects in more than one Member State

Defines (1)

Source texts: the Official Journal, through the Publications Office. Dataset built 2026-07-29. Study aid, not legal advice.

GDPR 32016R0679

Every connection on this page is drawn from the official text of Regulation (EU) 2016/679. Study aid, not legal advice.

See how GDPR sits beside the other three acts on the crossover map, or find what your role must do in the obligations checklist.

Useful to someone you work with?

GAGE briefings tell you which AI regulation deadlines are coming, what they actually require of you, and when a program opens.