What Act on the Protection of Personal Information (as amended by Act No. 19234, Mar. 14, 2023) requires
This amendment to South Korea's Personal Information Protection Act (PIPA) expands the mandatory designation of a Data Protection Officer (DPO) to smaller entities based on revenue and data volume (Article 31), introduces an adequacy decision mechanism for international data transfers (Article 28-8), and consolidates rules for online service providers into the main Act, enhancing the enforcement powers of the Personal Information Protection Commission (PIPC).
Pillar: Legal & IP Sovereignty · Authority: Personal Information Protection Commission (PIPC), Republic of Korea · Version: 1.0.0 · Last updated:
Primary source: https://www.pipc.go.kr/eng/
SHA-256 integrity: 120bb5c6851c00b448a67d764fda5c4860b9d12c1c41e8c788ce0ffa076e6a06
Primary Citations — 7 traced to source
- Personal Information Protection Act (Act No. 19234), Article 28-8 (Decision on Adequate Level of Protection for Cross-Border Transfer of Personal Information)
- Personal Information Protection Act (Act No. 19234), Article 31 (Designation of Data Protection Officer)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/south-korea-pipa-2023-amendment.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/south-korea-pipa-2023-amendment.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/south-korea-pipa-2023-amendment
- Back to registry: Browse all 10,099 compliance nodes