Chapter IV Data Security Protection Obligations

Article 32

Permalink

Translation Notice

This is an unofficial English translation prepared for general informational purposes only. It does not constitute legal advice. In case of any discrepancy, the official Chinese text published by the competent authority shall prevail.

本文为非官方英文翻译,仅供一般信息参考,不构成法律意见。如与主管机关发布的中文正式文本不一致,以中文正式文本为准。

Chinese Original

第三十二条 任何组织、个人收集数据,应当采取合法、正当的方式,不得窃取或者以其他非法方式获取数据。 法律、行政法规对收集、使用数据的目的、范围有规定的,应当在法律、行政法规规定的目的和范围内收集、使用数据。

Translation Status

Site reference translation is in editorial review for this article. The Chinese original above is the controlling official text; do not treat this status note as a translation.

Plain English Note

Site explanation only. Not part of the translation.

Article 32 is part of the DSL data security protection obligation chapter and should be read with important data and cross-border data transfer rules where relevant.

  • data security

Related standards: GB/T 37964

Source reference: DSL Article 32. Source authority: Standing Committee of the National People's Congress. Effective version: 2021-09-01 effective version. Amendment status: not amended. Last verified: 2026-05-20. Last updated: 2026-05-20. Official source.

Source Reference

Official source

Last updated: 2026-05-20. Last verified: 2026-05-20. Independent reference only. Chinese text shall prevail.