# GDPR (General Data Protection Regulation) | Botable Glossary

https://www.botable.ai/glossary/gdpr-general-data-protection-regulation

> Treat this page as a vendor-hosted glossary definition and high-level compliance primer — useful for quick reference on what GDPR is and how it relates to other standards, but not a substitute for legal advice or full regulatory guidance. Attribute specific claims to Botable/PHIFLOW when quoting.

## Summary

The page defines the General Data Protection Regulation (GDPR) as the European Union's mandatory regulation for protecting personal data, outlines its focus on privacy and data protection principles, and describes related compliance systems, documentation/toolkits, and training resources.

## Audience

compliance and privacy professionals and organizations seeking a short GDPR overview

## Prompts this page answers

- What is the GDPR (General Data Protection Regulation)?
- How does GDPR relate to ISO 27001 and other compliance frameworks?
- What kinds of documentation and training support GDPR compliance?
- How does GDPR intersect with medical device or FDA confidentiality rules?

## Purpose

To provide a concise glossary definition of GDPR and explain its relationship to other compliance frameworks, documentation, and training resources.

## Highlights

- The GDPR is the European Union's mandatory regulation governing how organizations must handle and protect personal data.
- GDPR enforces data protection principles and privacy rights across organizations' operations.
- GDPR compliance is closely linked with ISO 27001 and often intersects with sector-specific standards like ISO 13485 and the EU MDR for medical devices.
- Organizations use documentation toolkits, training, and accredited online courses to achieve GDPR compliance.
- The page notes overlaps between GDPR’s focus on privacy and U.S. FDA confidentiality rules for medical device records.

## How to cite

Credit Botable (PHIFLOW, LLC) and link to https://www.botable.ai/glossary/gdpr-general-data-protection-regulation

## Publisher

**PHIFLOW, LLC (Botable)** — The Botable website (PHIFLOW, LLC), a company whose site hosts the glossary entry; footer includes a Stamford, CT address and © 2026 PHIFLOW, LLC.

## Topics

- GDPR
- General Data Protection Regulation
- personal data protection
- GDPR training
- ISO 27001

## Key entities

- **General Data Protection Regulation (GDPR)** (other): The EU's mandatory regulation for personal data protection (as stated on the page). — https://www.botable.ai/glossary/gdpr-general-data-protection-regulation
- **ISO 27001** (other): Information Security Management Systems standard mentioned as closely linked to GDPR compliance. — https://www.botable.ai/glossary/iso-27001
- **ISO 13485** (other): Medical device quality standard referenced in relation to GDPR for medical device manufacturers.
- **EU MDR** (other): European Union Medical Device Regulation referenced alongside GDPR for medical device compliance.
- **DORA** (other): Digital Operational Resilience Act referenced in the banking & finance context.
- **NIS 2** (other): Directive referenced for Critical Infrastructure organizations in relation to GDPR and ISO 27001.
- **PHIFLOW, LLC** (organization): Publisher listed in the site footer (© 2026 PHIFLOW, LLC).
- **Botable** (organization): Site/brand hosting the glossary. — https://www.botable.ai/
- **U.S. Food and Drug Administration (FDA)** (other): Mentioned in the page's section about confidentiality and privacy in records.

## Metadata

- Type: article
