#
Comprehensive omnibus regime fully in force with an operational, EDPB-member supervisory authority and confirmed national implementing statute.
Sub-modules (5)
Regulator And AuthorityGreen
The Information Commissioner is confirmed as Slovenia's GDPR supervisory authority and EDPB member.
Claims (1):
- The Information Commissioner of the Republic of Slovenia (Informacijski pooblaščenec) is the national supervisory authority responsible for enforcing GDPR and ZVOP-2 in Slovenia and is a full voting member of the European Data Protection Board.
Act And InstrumentsGreen
ZVOP-2, adopted 15 December 2022, transposes GDPR into Slovenian law.
Claims (1):
- Slovenia's Personal Data Protection Act (ZVOP-2), adopted by the National Assembly on 15 December 2022, transposes the GDPR into Slovenian national law.
Material ScopeGreen
ZVOP-2 covers confidentiality of processing, public-area video surveillance, special categories, biometrics, and research/archival/statistical processing.
Claims (2):
- ZVOP-2 contains specific national provisions on the confidentiality of personal data processing, video surveillance in public areas, and the processing of special categories of personal data.
- ZVOP-2 additionally regulates transmission of personal data in the public and private sectors, biometric data processing, and personal data processing for research, archival, and statistical purposes.
Territorial ScopeGreen
GDPR Article 3 establishment- and targeting-based territorial scope applies directly in Slovenia as EU law.
Claims (1):
- As GDPR applies directly in Slovenia as an EU Member State, GDPR Article 3's establishment-based and targeting-based extraterritorial application rules govern controllers/processors operating in or targeting data subjects in Slovenia.
Regulator Registration And FilingAmber
GDPR's abolition of general prior-notification/registration duties applies; no confirmed Slovenia-specific residual general filing regime was located in this pass beyond narrow sectoral possibilities.
Claims (1):
- GDPR's abolition of general prior notification/registration duties applies in Slovenia; ZVOP-2 does not reinstate a general filing regime, though narrower national filing/registration duties may apply to specific processing operations under national law.
No new data since the standing brief. 1 periodic run re-emitted it unchanged.
Sources and claims (6)
- ConfirmedEuropean Data Protection Board — The Information Commissioner of the Republic of Slovenia (Informacijski pooblaščenec) is the national supervisory authority responsible for enforcing GDPR and ZVOP-2 in Slovenia and is a full voting member of the European Data Protection Board.observed
- ConfirmedDataGuidance — Slovenia's Personal Data Protection Act (ZVOP-2), adopted by the National Assembly on 15 December 2022, transposes the GDPR into Slovenian national law.observed
- ConfirmedDataGuidance — ZVOP-2 contains specific national provisions on the confidentiality of personal data processing, video surveillance in public areas, and the processing of special categories of personal data.observed
- ConfirmedIAPP — ZVOP-2 additionally regulates transmission of personal data in the public and private sectors, biometric data processing, and personal data processing for research, archival, and statistical purposes.observed
- ConfirmedEUR-Lex / European Union — As GDPR applies directly in Slovenia as an EU Member State, GDPR Article 3's establishment-based and targeting-based extraterritorial application rules govern controllers/processors operating in or targeting data subjects in Slovenia.observed
- UncertainDataGuidance — GDPR's abolition of general prior notification/registration duties applies in Slovenia; ZVOP-2 does not reinstate a general filing regime, though narrower national filing/registration duties may apply to specific processing operations under national law.observed