BDSG — Bundesdatenschutzgesetz (Federal Data Protection Act, 2018) · vBDSG 2018

BDSG — Bundesdatenschutzgesetz (Federal Data Protection Act, 2018)

BDSG — Bundesdatenschutzgesetz (Federal Data Protection Act, 2018) — 100% covered.

4 requirements · 4 enforced · 0 designed · 0 advisory · 0 deferred.

Source: BDSG — Bundesdatenschutzgesetz (Federal Data Protection Act, 2018). National statute implementing/supplementing Regulation (EU) 2016/679 (GDPR) in Germany. Substantive obligations resolve to the deep GDPR per-article registry (internal) reused via the framework__jurisdiction edge; this registry maps only the Germany-specific national deltas.

By category

CategoryReqsEnforcedDesignedAdvisoryDeferredCoverage
GDPR transposition (national basis) 1 1 0 0 0 100%
Supervisory authority + accountability 1 1 0 0 0 100%
Breach notification (national channel) 1 1 0 0 0 100%
Employee-data processing (national delta) 1 1 0 0 0 100%

Every requirement → the KYE artefact that enforces it

IDTitleStatusKYE enforcement
de-bdsg.gdpr-transposition BDSG — Bundesdatenschutzgesetz (Federal Data Protection Act, 2018) transposes / supplements the GDPR (Reg. (EU) 2016/679) into Germany national law — the substantive data-protection obligations resolve to the GDPR per-article bijection enforced audit_events: kye.purpose.admissibility.v1, kye.evidence.decision_map.v1
engines: internal, internal
constitution_refs: constitution/12-PURPOSE-PERMISSION.md, constitution/21-DELEGATED-AUDITABILITY.md
de-bdsg.supervisory-authority Cooperation with the national supervisory authority (BfDI / the Länder DPAs) — records of processing and the demonstrable-accountability account an AI agent's data processing must produce on request enforced audit_events: kye.evidence.pack.v1, kye.compliance.attestation.v1
engines: internal, internal
constitution_refs: constitution/21-DELEGATED-AUDITABILITY.md, constitution/31-DATA-GOVERNANCE-PACK.md
de-bdsg.breach-notification Personal-data breach notification to BfDI / the Länder DPAs (and affected individuals) within the GDPR Art. 33/34 window, on the national reporting channel enforced audit_events: kye.signal.incident.opened.v1, kye.compliance.attestation.v1
engines: internal, internal
constitution_refs: constitution/13-RESILIENCE-LOOP.md
de-bdsg.employee-data-bdsg-26 BDSG §26 — processing of employee personal data for employment purposes (works-council co-determination, consent validity in the employment relationship) enforced audit_events: kye.purpose.admissibility.v1, kye.purpose.request.v1
engines: internal, internal
constitution_refs: constitution/12-PURPOSE-PERMISSION.md