《電子技術應用》
您所在的位置:首頁 > 其他 > 設計應用 > 大數(shù)據(jù)時代下歐盟數(shù)據(jù)可攜帶權(quán)的風險和啟示
大數(shù)據(jù)時代下歐盟數(shù)據(jù)可攜帶權(quán)的風險和啟示
網(wǎng)絡安全與數(shù)據(jù)治理 8期
呂思祺
(復旦大學法學院,上海200438)
摘要: 數(shù)據(jù)可攜帶權(quán)是歐盟于2018年生效的一項新興權(quán)利,允許數(shù)據(jù)主體不受阻礙地將個人數(shù)據(jù)傳輸給另一個數(shù)據(jù)控制者。研究數(shù)據(jù)可攜帶權(quán)對我國個人數(shù)據(jù)保護體系的建構(gòu)、國內(nèi)互聯(lián)網(wǎng)企業(yè)走向國際市場都將起到積極促進的作用。通過對歐盟《一般數(shù)據(jù)保護條例》中的立法規(guī)定及其實施現(xiàn)狀進行分析,發(fā)現(xiàn)該條款實質(zhì)上已淪為僵尸條款,并未發(fā)揮預期的功能。我國在《中華人民共和國個人信息保護法》中確立了此項權(quán)利,在后續(xù)相關制度規(guī)定時應當參考歐盟經(jīng)驗,對數(shù)據(jù)可攜帶權(quán)的客體范圍進行限縮,加強政府部門分層級監(jiān)管,實現(xiàn)數(shù)據(jù)可攜帶權(quán)的中國本土化。
中圖分類號:D913
文獻標識碼:A
DOI:10.19358/j.issn.2097-1788.2023.08.001
引用格式:呂思祺.大數(shù)據(jù)時代下歐盟數(shù)據(jù)可攜帶權(quán)的風險和啟示[J].網(wǎng)絡安全與數(shù)據(jù)治理,2023,42(8):1-5,12.
Risks and insights of EU data portability in the era of big data
Lv Siqi
(School of Law, Fudan University, Shanghai 200438, China)
Abstract: The right to data portability, introduced in the European Union in 2018, empowers data subjects to transfer personal data unimpeded to another data controller. An investigation into this emerging right contributes positively to the construction of China′s personal data protection system and propels domestic internet enterprises onto the global stage. By scrutinizing the legislative stipulations in the EU General Data Protection Regulation and examining the current status of its implementation, it is discerned that the provision essentially operates as a dormant clause, failing to deliver its intended function. As China has enshrined this right in the Personal Data Protection Law of the People′s Republic of China, it should draw upon the EU′s regulatory experiences. This includes limiting the scope of the right to data portability, strengthening hierarchical oversight by governmental departments, and actualizing the localization of data portability rights within China′s jurisdiction.
Key words : right to data portability; GDPR; data protection; personal data protection; data security governance

0    引言

大數(shù)據(jù)時代改變了人類的生活和工作方式,同時也給個人數(shù)據(jù)和隱私的保護帶來了更大的挑戰(zhàn)。2016年,歐盟出臺的“史上最嚴數(shù)據(jù)保護法律”——《一般數(shù)據(jù)保護條例》(General Data Protection Regulation,GDPR)中引入了名為“數(shù)據(jù)可攜帶權(quán)”的制度,使數(shù)據(jù)主體能夠不受阻礙地將個人數(shù)據(jù)在不同數(shù)據(jù)控制者之間傳輸。這一權(quán)利旨在促進個人數(shù)據(jù)在歐盟內(nèi)的自由流通,避免個人數(shù)據(jù)的“鎖定”,讓用戶能在不同的數(shù)據(jù)控制者之間便捷自由地切換,以鼓勵市場競爭。然而,制度運行在具體實踐中卻出現(xiàn)了諸多問題:由于條文規(guī)定含糊、標準不統(tǒng)一、技術可操作性較差等問題,其實際上并沒有給數(shù)據(jù)安全和市場公平競爭帶來積極意義,而最終淪為僵尸條款。本文將針對以上問題展開論述,探討該制度的緣起、發(fā)展及現(xiàn)實困境,以期為我國未來的立法實踐提供參考。



本文詳細內(nèi)容請下載:http://ihrv.cn/resource/share/2000005459




作者信息:

呂思祺

(復旦大學法學院,上海200438)


微信圖片_20210517164139.jpg


此內(nèi)容為AET網(wǎng)站原創(chuàng),未經(jīng)授權(quán)禁止轉(zhuǎn)載。