Laws · GDPR ·art-17-par-2 EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.
Full text
Where the controller has made the personal data public and is obliged pursuant to paragraph 1 to erase the personal data, the controller, taking account of available technology and the cost of implementation, shall take reasonable steps, including technical measures, to inform controllers which are processing the personal data that the data subject has requested the erasure by such controllers of any links to, or copy or replication of, those personal data.
How it connects
Cited by
- Guidelines 3/2019 on processing of personal data through video devices
- Guidelines 10/2020 on restrictions under Article 23 GDPR
- EDPB contribution to the EBA public consultation on draft regulatory technical standards on AML/CFT
- EDPB contribution to the EBA public consultation on draft regulatory technical standards on AML/CFT
- Opinion 2/2026 on the Proposal for a Directive amending Directives (EU) 2016/2341 and 2016/97 as regards the strengthening of the framework for occupational retirement provision
All 28
- Unabhängiges Landeszentrum für Datenschutz v Wirtschaftsakademie Schleswig-Holstein
- EDPB-EDPS Joint opinion 2/2026 on the Proposal for a Regulation as regards the simplification of the digital legislative framework (
- Coordinated Enforcement Action,
- AEPD admits claim against Securitas Direct for failure to handle access and erasure
- Austrian FAC: DPA rightly found loyalty program consent for profiling invalid under GDPR
- Rb. Midden-Nederland - UTR 21/3403
- EDPB Article 97 GDPR application report: GDPR successful but improvements needed
- Statement 1/2023 on the first review of the functioning of the adequacy decision for Japan
- EDPB-EDPS Joint Opinion 2/2022 on the Proposal of the European Parliament and of the Council on harmonised rules on fair access to and use of data (Data Act)
- Opinion 39/2021 on whether Article 58(2)(g) GDPR could serve as a legal basis for a supervisory authority to order ex officio the erasure of personal data, in a situation where such request was not submitted by the data subject
- Contribution of the EDPB to the evaluation of the GDPR under Article 97
- Budapest Főváros IV. Kerület Újpest Önkormányzat Polgármesteri Hivatala v Nemzeti Adatvédelmi és Információszabadság Hatóság
- UZ v Bundesrepublik Deutschland
- Proximus NV v Gegevensbeschermingsautoriteit
- Ligue des droits humains ASBL v Conseil des ministres
- Mircom International Content Management & Consulting (M.I.C.M.) Limited v Telenet BVBA
- Coty Germany GmbH v Stadtsparkasse Magdeburg
- NAIH (Hungary) - NAIH-11443-3/2026
- High Court examines DPA inquiry into Meta's refusal of raw data access and portability
- Persónuvernd (Iceland) - 2025010364
- Cyprus court upholds €5,000 DPA fine on Pancyprian Judo Federation for Article 31 GDPR
- Persónuvernd: Icelandic Farmers’ Association breached GDPR by disclosing owner data to
- Guidelines 04/2026 on the application of the power to impose administrative fines in relation to other corrective powers under the GDPR