# Personal Information Protection and Electronic Documents Act (PIPEDA)

# Acronyms, Abbreviations, and Initialisms

Short Form Full Form
EU European Union
GDPR General Data Protection Regulation
PIPEDA Personal Information Protection and Electronic Documents Act

# Overview

The Personal Information Protection and Electronic Documents Act (PIPEDA) applies to private sector organizations across Canada that collect, use, or disclose personal information in the course of a commercial activity. Businesses must follow the 10 fair information principles to protect personal information.

All businesses that operate in Canada and handle personal information that crosses provincial or national borders in the course of commercial activities are subject to PIPEDA, regardless of the province or territory in which they are based (including provinces with substantially similar legislation).

Federally regulated organizations that conduct business in Canada are always subject to PIPEDA.

# Principles

  1. Accountability
  2. Identifying Purposes
  3. Consent
  4. Limiting Collection
  5. Limiting Use, Disclosure, and Retention
  6. Accuracy
  7. Safeguards
  8. Openness
  9. Individual Access
  10. Challenging Compliance

# Noteworthy

  • PIPEDA is a Canadian law.
  • PIPEDA applies to private sector organizations.
  • PIPEDA contains 10 fair information principles.

# Sources