Proof, compliance and data
GDPR
The GDPR is the European regulation on personal data protection, in force since May 2018 for any organisation that processes such data.
It requires a legal basis for each processing operation, information for the people concerned, data minimisation and security, and gives everyone rights of access, rectification and erasure. In France, compliance is supervised by the CNIL, which can impose penalties. Sending a document containing personal data is a processing operation.
Why it matters for fax
Sending a fax means entrusting data to a network, possibly a provider, and a machine whose users are often unknown. The GDPR makes the sender ask these questions: a verified number, a service that deletes documents, and data limited to what is necessary.