Unofficial reference summary
What This Regulation Covers
CAC Order No. 18 establishes administrative requirements for personal information protection compliance audits and has been effective since 1 May 2025.
Why It Matters
The measures connect the PIPL's compliance-audit duties with audit frequency, professional institutions, processor responsibilities, and regulatory supervision.
Source-reading Note
Read the binding measures separately from GB/T 46903-2025, which is a recommended national standard rather than a law or departmental rule.
This website is for informational and educational purposes only. It does not constitute legal advice. The Chinese text shall prevail. Users should consult qualified legal counsel for specific matters.
Key Topics
- Personal Information Protection / Compliance Audit
- Personal information protection compliance audits
- pipl
Who May Find This Relevant
Personal information processors and professional institutions
This is a document summary, not a regulatory filing instruction, a mechanism-decision page, legal opinion, or company-specific assessment.
Related Reading
Public Metadata
- Chinese official title
- 个人信息保护合规审计管理办法
- English translated title
- Measures for the Administration of Personal Information Protection Compliance Audits
- Document type
- Departmental Rule
- Category
- Personal Information Protection / Compliance Audit
- Issuing authority
- Cyberspace Administration of China
- Publication date
- 2025-02-14
- Effective date
- 2025-05-01
- Status
- effective
- Source verification
- Verified
- Translation status
- editorial summary only
- Official source
- Open official source
Public Content Boundary
This page provides original editorial context and verified public metadata. It does not reproduce the complete official text or present an official English translation. Use the official source for the controlling Chinese text.