Law note · Romania

ANSPDCP Enforcement and GDPR Article 82

cite Regulation (EU) 2016/679, Arts. 82-83 stage In effect since 2018-05-25 reviewed 2026-08-24

Autoritatea Nationala de Supraveghere a Prelucrarii Datelor cu Caracter Personal (ANSPDCP, National Supervisory Authority for Personal Data Processing) is Romania's supervisory authority, with no Romania-specific enforcement addition beyond the General Data Protection Regulation (GDPR) Article 83 baseline found in this pass.

GDPR Article 82 arms an individual with a direct private right of action; commentary describes ordinary Romanian tort liability rules as the procedural vehicle for such a claim rather than a distinct additional remedy. No collective-redress mechanism was found in either commentary source.

What it asks of an app

  • Expect ANSPDCP to have General Data Protection Regulation (GDPR) Article 83 fining power over your processing of personal data of a person in Romania.
  • Expect any person in Romania who suffered material or non-material damage from an infringement to have a direct GDPR Article 82 right to compensation from you as controller or processor, pursued through ordinary Romanian tort procedure.

When LexLint raises it

Declared activities: crawls_web, trains_models, deploys_chatbot, processes_biometrics, processes_voice

Primary source: GDPR Arts. 82-83
CMS and DLA Piper commentary (no primary text read)

← Back to the example  ·  Lint your app →