Your HR team collects Aadhaar numbers, biometric attendance logs, health records, performance reviews, etc. The list can be surprising.
Under the DPDPA, this is“personal data” and your current HR policies likely violate the law because:
You are liable for their breaches.
Reputation nuke– Data Protection Board investigations will be known, publically.
1.“We retain employee data for business purposes” ➜Vague
2.“By joining, you consent to data processing”➜Blanket consent
3.“We share data with verified third parties”➜ Illegal
4.“Data anonymized for analytics”➜ Anonymization does not entitle you as an exception
These are a Few of the DPDPA’s HR Trap: Who is Already Falling?
This article is an academic initiative brought to you by the Data Privacy Pro team, India’s leading source for cutting-edge insights in data privacy. Stay updated, stay compliant.