Search this Act
Jump directly to a section by number or title.
Digital Personal Data Protection Rules, 2025
Read the rules provision by provision, jump to a rule, or open the AI companion beside the text you are reviewing.
Act No. G.S.R. 846(E) · Rule structure
Choose a chapter or schedule
1 chapter · 30 rules · 7 schedules. Tap a division to reveal its provisions.
1 chapter · 30 rules · 7 schedules. Press ⌘K to jump.
Digital Personal Data Protection Rules, 2025
Chapter 1 overview
- Short title and commencement
- Definitions
- Notice given by Data Fiduciary to Data Principal
- Registration and obligations of Consent Manager
- Processing of personal data for provision or issue of subsidy, benefit, service, certificate, licence or permit by State and its instrumentalities
- Reasonable security safeguards
- Intimation of personal data breach
- Time period for specified purpose to be deemed as no longer being served
- Contact information of person to answer questions about processing
- Verifiable consent for processing of personal data of child
- Verifiable consent for processing of personal data of person with disability who has lawful guardian
- Exemptions from certain obligations applicable to processing of personal data of child
- Additional obligations of Significant Data Fiduciary
- Rights of Data Principals
- Transfer of personal data outside the territory of India
- Exemption from Act for research, archiving or statistical purposes
- Appointment of Chairperson and other Members
- Salary, allowances and other terms and conditions of service of Chairperson and other Members
- Procedure for meetings of Board and authentication of its orders, directions and instruments
- Functioning of Board as digital office
- Terms and conditions of appointment and service of officers and employees of Board
- Appeal to Appellate Tribunal
- Calling for information from Data Fiduciary or intermediary