Laws · GDPR ·art-28-par-10 EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.
Full text
Without prejudice to Articles 82, 83 and 84, if a processor infringes this Regulation by determining the purposes and means of processing, the processor shall be considered to be a controller in respect of that processing.
How it connects
Cited by
- Guidelines 07/2020 on the concepts of controller and processor in the GDPR
- SO Warszawa - III C 904/23
- LG Rostock: Pre-ticked cookie consent boxes invalid under Art 6(1)(a) GDPR
- Guidelines 05/2021 on the Interplay between the application of Article 3 and the provisions on international transfers as per Chapter V of the GDPR
- Nacionalinis visuomenės sveikatos centras prie Sveikatos apsaugos ministerijos v Valstybinė duomenų apsaugos inspekcija
All 8
- DSB: No processor access violation under Art. 15 GDPR when controller deleted data
- AEPD sanctions Vodafone España for inadequate Super WiFi processor agreement and oversight
- Guidelines 04/2026 on the application of the power to impose administrative fines in relation to other corrective powers under the GDPR