Law note · Cyprus

Law 125(I)/2018, Cyprus GDPR Supplement

cite Law 125(I)/2018 of 2018 stage In effect since 2018-07-31 reviewed 2026-08-24

Cyprus's private-sector regime is the General Data Protection Regulation (GDPR) plus Law 125(I)/2018 (The Protection of Natural Persons with regard to the Processing of Personal Data and for the Free Movement of such Data Law of 2018), published in the Official Gazette of the Republic of Cyprus on 31 July 2018, supplying domestic derogations and procedural rules. The Office of the Commissioner for Personal Data Protection (ODPC) is the supervisory authority.

The law's official English translation PDF was not reachable at its previously published URL this pass (now redirecting to a general landing page), so article-level detail below is commentary sourced rather than a primary-text read.

What it asks of an app

  • Establish a General Data Protection Regulation (GDPR) Article 6 lawful basis before processing personal data of a person in Cyprus, including data collected by crawling.

When LexLint raises it

Declared activities: crawls_web, trains_models, deploys_chatbot, automated_outreach

Primary source: Official Gazette of the Republic of Cyprus, 31 July 2018
secondary commentary (Harris Kyriakides, a Cyprus-qualified law firm), not independently confirmed against the Law's own text this pass

← Back to the example  ·  Lint your app →