Our economy depends more and more on data: data can create significantly added value to existing services and facilitate entirely new business models
As estimated by one of the support studies, taking away obstacles to data mobility is expected to generate an additional growth of up to 4% GDP by 2020 (Deloitte). That is why the Commission has proposed to remove all disproportionate restrictions to the movement of data across Member States and IT systems in Europe.
Today, the main obstacles that preclude free flow of data in the Digital Single Market are:
- Unjustified data localisation restrictions by Member States' public authorities,
- Legal uncertainty about legislation applicable to cross-border data storage and processing,
- A lack of trust in cross-border data storage and processing linked to concerns amongst Member States' authorities about the availability of data for regulatory scrutiny purposes
- Difficulties in switching service providers (such as cloud) due to vendor lock-in practices.
Proposal for a Regulation
The Commission has proposed a Regulation aimed at removing obstacles to the free movement of non-personal data.
On personal data, as well as ensuring a high level of protection for personal data, the General Data Protection Regulation (GDPR) already provides for the free movement of personal data within the Union. Together with the GDPR, this Regulation will therefore ensure a comprehensive and coherent approach to the free movement of data in the EU.
The new Regulation will ensure:
- Free movement of non-personal data across borders: every organisation should be able to store and process data anywhere in the European Union,
- The availability of data for regulatory control: public authorities will retain access to data, also when it is located in another Member State or when it is stored or processed in the cloud,
- Easier switching of cloud service providers for professional users. The Commission proposes a self-regulatory approach, encouraging providers to develop codes of conduct regarding the conditions under which users can port data between cloud service providers and back into their own IT environments,
- Full consistency and synergies with the cybersecurity package, and clarification that any security requirements that already apply to businesses storing and processing data will continue to do so when they store or process data across borders in the EU or in the cloud.
The Commission's work on free flow of data was announced in the context of actions to enhance the data economy - see Communication "Building a European Data Economy" (10 January 2017), in a more targeted context, in the Communication "DSM mid-term review" (10 May 2017). The free flow of data proposal is one of the sixteen intended actions listed in the Digital Single Market strategy of May 2015.
Since the Communication on the European Data Economy was adopted in January 2017, the Commission has run a public online consultation, it organised structured dialogues with the Member States and has undertaken several workshops with different stakeholders. These evidence-gathering initiatives have led to the publication of an impact assessment.
Press and communication
- Press release and MEMO – Q&A on the proposed Regulation on the free flow of non-personal data
- Blog by Vice-President Andrus Ansip on 13/09/2017 on the adoption of the proposal for a Regulation
- Speech by Vice-President Andrus Ansip at Digital Single Market conference on the free movement of data, Tallinn 17 July 2017
Factsheet explaining free flow of non-personal data
- Study on Measuring the economic impact of cloud computing in Europe
- Study on Facilitating cross-border data flow in the Digital Single Market: data location restrictions
- European Data Market study
- Digital Assembly 15/16 June 2017: Data Economy workshop & report
- Net Futures 2017 Conference "A free flow of data help building European Data Economy"
- Cloud switching workshop 18 May