What is GDPR, and how does it affect us as prospect researchers and prospect managers? How does it affect our fundraisers or senior leadership? Does GDPR affect those of us based in the U.S. or just global organizations? What policies do we need to create to accommodate GDPR?
According to the Chartered Institute of Fundraising in the UK, the General Data Protection Regulation (GDPR) is an EU-wide regulation that came into effect in the U.K. on May 25, 2018. It replaced a previous law on data protection (the Data Protection Act of 1998) and gives individuals more rights and protection in how their personal data is used by organizations.
The key areas to keep in mind for our work as PD professionals are consent and personal data storage:
We may not have all the answers, but these are the key principles regarding consent and the storage of personal data that prospect research should consider. It's important to make these decisions in advance and have policies in place within your team and throughout your organization:
What other questions do prospect development professionals have about GDPR? Contact the Ethics & Compliance Committee at ethics@aprahome.org.