Data Security Law
Data Security Law of the People's Republic of China
- Jurisdiction
- China · CN
- In force since
- 1 September 2021
Who it applies to
Data-processing activities in China, with classification and cross-border rules.
Documents it requires
- Privacy policy
- Terms of service
Cookies and consent
This framework does not regulate trackers specifically. The rules of the markets you also serve still apply.
What we are watching in China
These are the changes our update engine tracks for this market. When one takes effect, the documents it affects are regenerated and republished — you do not have to notice it yourself.
- PIPL (China)1 November 2021
Ley de Protección de Información Personal de China: consentimiento separado, evaluación de impacto y reglas estrictas para transferencias fuera de China.
See what your site is actually missing
Paste your URL. We fetch the live page, detect the trackers, payments and AI calls that really ship to visitors, and tell you which documents and consent you need. No signup.
No signup · result in seconds
Data Security Law for your kind of product
- Data Security Law for a SaaS
- Data Security Law for a marketplace
- Data Security Law for an online store
- Data Security Law for a mobile app
- Data Security Law for an AI chatbot
- Data Security Law for an AI image generator
- Data Security Law for an AI writing tool
- Data Security Law for a fintech app
- Data Security Law for a health app
- Data Security Law for an education platform
- Data Security Law for a community platform
- Data Security Law for a newsletter
- Data Security Law for a booking site
- Data Security Law for a portfolio site
This page is an engineering summary of publicly available regulatory requirements, generated from LexVibe's framework registry — not legal advice. Every framework links to its official text so you can check it yourself. For decisions about your own compliance posture, consult the primary sources and a lawyer qualified in the relevant jurisdiction.