Laws · GDPR ·art-51-par-1 EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.
Full text
Each Member State shall provide for one or more independent public authorities to be responsible for monitoring the application of this Regulation, in order to protect the fundamental rights and freedoms of natural persons in relation to processing and to facilitate the free flow of personal data within the Union (‘supervisory authority’).
How it connects
Cited by
- Data Protection Commissioner v. Facebook Ireland Ltd, and Maximillian Schrems
- Guidelines 02/2022 on the application of Article 60 GDPR
- Draft UK adequacy decisions: EDPB adopts opinions
- Opinion 27/2025 regarding the European Commission Draft Implementing Decision pursuant to Directive (EU) 2016/680 on the adequate protection of personal data by the United Kingdom
- Data Protection Commissioner v Facebook Ireland and Maximillian Schrems
All 37
- Meta Platforms v noyb
- Contribution of the EDPB to the European Commission’s evaluation of the Data Protection Law Enforcement Directive (‘‘LED’’) under Article 62 LED
- Perspectives for Open Source AI
- DSB (Austria): DSB lacks competence over court processing under Art. 55(3) GDPR
- Opinion 28/2024 on certain data protection aspects related to the processing of personal data in the context of AI models
- Opinion 08/2024 on Valid Consent in the Context of Consent or Pay Models Implemented by Large Online Platforms
- EDPB Annual Report 2021
- Recommendations 01/2021 on the adequacy referential under the Law Enforcement Directive
- Opinion 8/2019 on the competence of a supervisory authority in case of a change in circumstances relating to the main or single establishment
- Opinion 5/2019 on the interplay between the ePrivacy Directive and the GDPR, in particular regarding the competence, tasks and powers of data protection authorities
- TR v Land Hessen
- Österreichische Datenschutzbehörde v WK
- UF and AB v Land Hessen
- European Commission v Republic of Poland
- BE v Nemzeti Adatvédelmi és Információszabadság Hatóság
- X and Z v Autoriteit Persoonsgegevens
- Facebook Ireland Ltd and Others v Gegevensbeschermingsautoriteit
- État luxembourgeois v B and Others
- Proceedings brought by Ministerio Fiscal
- CJEU - C‑313/23, C‑316/23 and C‑332/23 - Inspektorat kam Visshia sadeben savet
- DSB (Austria) - 2025-0.960.016
- DSB (Austria) - 2021-0.643.804
- DSB Austria: Publishing companies-register data on free ad-funded platform unlawful
- Austrian DSB: e-marketplace transfer of customer data to China and US requires valid Art.
- Austrian DSB: Controller's use of social security number for statutory financial aid was
- DSB: Retailer must grant full access and delete data after third-party fraud order
- DSB: No processor access violation under Art. 15 GDPR when controller deleted data
- DSB (Austria) - DSB-D124.5337
- DSB (Austria) - DSB-D124.2437/25
- BVwG: Data protection complaint by litigation-funded enforcement association inadmissible
- DSB Austria: disclosure of health data to court-appointed expert in legal dispute lawful
- European Commission v Hungary
Related across sources
C-288/12 Judgment of the Court (Grand Chamber), 8 April 2014.#European Commission v Hungary.#Failure of a Member State to fulfil obligations — Directive 95/46/EC — Protection of individuals with regard to the processing of personal data and the free movement of such data — Article 28(1) — National supervisory authorities — Independence — National legislation prematurely bringing to an end the term served by the supervisory authority — Creation of a new supervisory authority and appointment of another per The European Commission brought an infringement action against Hungary before the Court of Justice (Grand Chamber) under Article 258 TFEU, alleging that Hungary violated Article… CJEU Apr 8, 2014 Supervision Supervisory Authorities Personal Data
Opinion 01/2019 draft list of the competent supervisory authority of the Principality of Liechtenstein regarding the processing operations subject to the requirement of a data protection impact assessment (Article 35.4 GDPR) Adopted 1 EDPB Plenary Meeting, 22 - 23 January 2019 Opinion 01 /201 9 on the draft list of the competent supervisory authority of the Principality of Liechtenstein regarding the… Opinion ·EDPB Jan 23, 2019 DPIA Supervision Supervisory Authorities
Opinion 4/2018 draft list of the competent supervisory authority of Czech Republic regarding the processing operations subject to the requirement of a data protection impact assessment (Article 35.4 GDPR) Opinion ·EDPB Oct 3, 2018 DPIA Supervision Supervisory Authorities
Opinion 16/2018 draft list of the competent supervisory authority of the Netherlands regarding the processing operations subject to the requirement of a data protection impact assessment (Article 35.4 GDPR) Opinion ·EDPB Oct 3, 2018 DPIA Supervision Supervisory Authorities
Opinion 7/2019 draft list of the competent supervisory authority of Iceland regarding the processing operations subject to the requirement of a data protection impact assessment (Article 35.4 GDPR) Adopted 1 EDPB Plenary m eeting, 12 - 13 March 2019 - Item 2.3.1 Opinion 7 /201 9 on the draft list of the competent supervisory authority of Iceland regarding the processing… Opinion ·EDPB Mar 12, 2019 DPIA Supervision Supervisory Authorities