Compliance Node Overview
Burundi enacted the Law on Personal Data Protection in 2020, establishing a comprehensive legal framework for the protection of personal data in the Republic of Burundi. The law is administered by the Agence de Régulation et de Contrôle des Télécommunications (ARCT). It establishes principles for the lawful processing of personal data, requires data controllers to obtain consent from data subjects before collecting personal data, grants data subjects rights of access, rectification, and erasure, mandates security safeguards, and restricts cross-border transfers to jurisdictions with adequate protection. Data controllers must register their processing activities with the ARCT. The law aligns with the African Union Malabo Convention on cyber security and personal data protection.
Pillar: Cybersecurity · Authority: Agence de Régulation et de Contrôle des Télécommunications (ARCT), Burundi · Version: 1.0.0 · Last updated:
Primary source: https://www.arct.gov.bi
SHA-256 integrity: 1adadbd8365cdd21162fefa975fa8be400f535b9f8c3638043da11fe753c82c1
Primary Citations — 5 traced to source
- Burundi Law on Personal Data Protection 2020, National Assembly of the Republic of Burundi
- African Union Convention on Cyber Security and Personal Data Protection (Malabo Convention, 2014)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.