Skip to main content
Shaping Europe’s digital future

Free flow of non-personal data

The EU wants to ensure a free flow of data in Europe, allowing companies and public administrations to store and process non-personal data wherever they choose.

Our economy depends more and more on data: data can create significantly added value to existing services and facilitate entirely new business models. To fully unleash the benefits of the data economy the Commission needs to ensure the free-flow of non-personal data.

The Regulation on the free flow of non-personal data

The Regulation on a framework for the free flow of non-personal data in the EU aims at removing obstacles to the free movement of non-personal data between different EU countries and IT systems in Europe.

The Regulation ensures:

  • Free movement of non-personal data across borders: every organisation should be able to store and process data anywhere in the EU.
  • The availability of data for regulatory control: public authorities will retain access to data, even when it is located in another EU country or when it is stored or processed in the cloud.
  • Easier switching between cloud service providers for professional users. The Commission has started facilitating self-regulation in this area, encouraging providers to develop codes of conduct regarding the conditions under which users can move data between cloud service providers and back into their own IT environments.
  • Full consistency and synergies with the cybersecurity package, and clarification that any security requirements that already apply to businesses storing and processing data will continue to do so when they store or process data across borders in the EU or in the cloud.

The General Data Protection Regulation (GDPR) already provides for the free movement of personal data within the EU. This Regulation will therefore ensure a comprehensive and coherent approach to the free movement of all data in the EU. To provide more clarity to businesses on how to handle data across borders the Commission has published informative guidance.

Background

The Commission is continuing its engagement with stakeholders, for instance by organising structured dialogues with EU countries and workshops with different stakeholders. And, the Commission is closely monitoring the work done by the self-regulatory cloud stakeholder groups on codes of conduct for easier switching of cloud providers, a European cloud security certification scheme, and more.

Relevant Studies

Latest News

The Commission calls on Ireland to comply with the EU Data Governance Act

The European Commission decided to open infringement proceedings because Ireland has not designated the competent authorities to implement the Data Governance Act.

Related Content

Big Picture

A European strategy for data

The strategy for data focuses on putting people first in developing technology, and defending and promoting European values and rights in the digital world.

Dig deeper

The European Data Flow Monitoring

In light of the European Data Strategy, the Cloud Data Flow Strategic Visualisation Tool allows strategic analysis, quantification, visualisation and monitoring of both volumes and economic values of cloud data flows across the European Union, EFTA countries and the UK.

See Also

Data Act

The Data Act is a comprehensive initiative to address the challenges and unleash the opportunities presented by data in the European Union, emphasising fair access and user rights, while ensuring the protection of personal data.

European Data Governance Act

A European Data Governance Act, which is fully in line with EU values and principles, will bring significant benefits to EU citizens and companies.

Big data

Data has become a key asset for the economy and our societies and the need to make sense of ‘big data’ is leading to innovations in technology.

Other

Cloud computing

The European Commission aims to provide European businesses and public authorities with access to...