What Counts as a Data Breach Under UK GDPR?
Not every cyber incident is a GDPR breach. Here’s how to know when you must act.
Under UK GDPR, a data breach isn’t just a hack — it’s any security incident that leads to:
- Unauthorised access to personal data
- Accidental loss or destruction
- Alteration or disclosure without consent
Examples:
- Sending personal data to the wrong recipient
- Loss of an unencrypted device
- Ransomware locking files
Understanding what qualifies as a breach is the first step toward compliance. If in doubt, treat it seriously and investigate fast.
