Notification trigger
Definition
The threshold condition that activates a legal notification obligation. Under GDPR the trigger is any personal data breach that poses a risk to individuals; below-risk breaches must be documented internally but not reported. Under many US state laws, the trigger is unauthorised access to defined categories of personal information without a risk qualification.
Related terms
- Covered Entity / Business Associate
- Terms used in the US HIPAA framework. Covered entities are healthcare providers, health plans, and healthcare clearinghouses. Business Associates are contractors that...
- Data fiduciary
- The term used in India's Digital Personal Data Protection Act 2023 for an entity that determines the purpose and means of processing...
- Personal data breach
- Under GDPR, a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to personal...
- Safe harbour (encryption)
- A provision in many breach notification frameworks that exempts organisations from individual notification obligations if the breached data was encrypted and the...
- Supervisory authority
- The national data protection regulator responsible for enforcing GDPR in a given EU member state, such as the UK Information Commissioner's Office...
Explained in
- Breach Notification Laws and ObligationsThe threshold condition that activates a legal notification obligation. Under GDPR the trigger is any personal data breach that poses a risk to individuals; be...