Core Viewpoint - The National Internet Information Office has drafted the "Regulations on the Collection and Use of Personal Information by Internet Applications (Draft for Public Comment)" to standardize the collection and use of personal information by internet applications, protect personal information rights, and promote reasonable use of personal information [1][2]. Group 1: General Principles - The regulations aim to protect personal information rights and promote reasonable use based on existing laws such as the Cybersecurity Law and the Personal Information Protection Law [2]. - Internet applications operating within China must comply with these regulations when collecting and using personal information [2]. - Collection and use of personal information must adhere to principles of legality, necessity, and integrity, and must not involve misleading or coercive practices [3]. Group 2: Responsibilities and Transparency - Internet application operators are responsible for the collection and use of personal information and must conduct effective audits of third-party software development kits (SDKs) [3][4]. - Operators must provide clear and transparent information regarding the collection and use of personal information, including the purpose, method, and types of data collected [5][6]. Group 3: User Consent and Rights - User consent is required for the collection of personal information, especially sensitive data, and users must be informed of their rights to access, modify, and delete their information [6][11]. - Internet applications must not refuse service based on a user's refusal to provide personal information unless it is essential for service delivery [3][10]. Group 4: Security and Compliance - Operators must implement adequate management and technical measures to protect personal information, especially for minors [11][36]. - In case of data breaches, operators are required to inform users and relevant authorities promptly [21][36]. Group 5: Industry Standards and Oversight - Industry organizations are encouraged to establish self-regulatory mechanisms and standards for personal information protection [4]. - The National Internet Information Office and other relevant authorities will oversee compliance with these regulations [19][20].
国家网信办就《互联网应用程序个人信息收集使用规定(征求意见稿)》公开征求意见
Yang Shi Wang·2026-01-10 08:13