Path:
Home >
GB/T >
Page698 > GB/T 45703-2025
Price & Delivery
US$764.00 · In stock · Download in 9 secondsGB/T 45703-2025: Consumer privacy protection in consumer goods and services design high-level requirements
Delivery: 9 seconds. True-PDF full-copy in English & invoice will be downloaded + auto-delivered via email. See
step-by-step procedureStatus: Valid
| Std ID | Version | USD | Buy | Deliver [PDF] in | Title (Description) |
| GB/T 45703-2025 | English | 764 |
Add to Cart
|
6 days [Need to translate]
|
Consumer privacy protection in consumer goods and services design high-level requirements
|
Click to Preview a similar PDF
Basic data
| Standard ID | GB/T 45703-2025 (GB/T45703-2025) |
| Description (Translated English) | Consumer privacy protection in consumer goods and services design high-level requirements |
| Sector / Industry | National Standard (Recommended) |
| Classification of Chinese Standard | A12 |
| Classification of International Standard | 03.080.01 |
| Word Count Estimation | 38,391 |
| Date of Issue | 2025-08-01 |
| Date of Implementation | 2025-08-01 |
| Issuing agency(ies) | State Administration for Market Regulation, Standardization Administration of China |
GB/T 45703-2025: Consumer privacy protection in consumer goods and services design high-level requirements
---This is an excerpt. Full copy of true-PDF in English version (including equations, symbols, images, flow-chart, tables, and figures etc.), auto-downloaded/delivered in 9 seconds, can be purchased online: https://www.ChineseStandard.net/PDF.aspx/GBT45703-2025
ICS 03.080.01
CCSA12
National Standard of the People's Republic of China
Consumer Privacy Protection in Product and Service Design
Advanced requirements
high-level requirements
goodsandservices-Part 1.High-levelrequirements,IDT)
Released on August 1, 2025
Implementation on August 1, 2025
State Administration for Market Regulation
The National Standardization Administration issued
Table of Contents
Preface III
1 Scope 1
2 Normative references 1
3 Terms and Definitions 1
4 General Principles 6
5 Consumer Communication Requirements13
6 Risk Management Requirements16
7 Develop, deploy, and operate designed-in privacy controls 20
8 Requirements for the end of the lifecycle of personally identifiable information24
Reference 27
Preface
This document is in accordance with the provisions of GB/T 1.1-2020 "Guidelines for standardization work Part 1.Structure and drafting rules for standardization documents"
Drafting.
This document is equivalent to ISO 31700-1.2023 "Consumer privacy protection in product and service design - Part 1.High-level requirements".
The following minimal editorial changes have been made to this document.
--- To coordinate with the existing standards, the document name was changed to "High-level requirements for consumer privacy protection in product and service design";
--- Deleted the corresponding ISO and IEC website links in the terms and definitions;
---Deleted the superscripts of the corresponding reference documents in the text.
Please note that some of the contents of this document may involve patents. The issuing organization of this document does not assume the responsibility for identifying patents.
This document is proposed and coordinated by the National Technical Committee for Service Standardization (SAC/TC264).
This document was drafted by. China National Institute of Standardization, Sichuan Shikesaisi Technology Co., Ltd., China University of Mining and Technology (Beijing), Shanghai Ubi
Choose Smart Health Technology Development Co., Ltd.
The main drafters of this document are. Liu Na, Fu Qiang, Wang Mengxiang, Wan Fujun, Shi Ying, Li Yufen, Tan Huan, Zhou Xingyao, Zhang Yuchen, Wang Qiaohui, Cao Qin,
Ma Hongbo.
Consumer Privacy Protection in Product and Service Design
Advanced requirements
1 Scope
This document specifies high-level requirements for privacy by design, including the handling of consumer data, to achieve privacy protection throughout the life cycle of consumer products.
This document does not contain specific requirements for privacy assurances and commitments that businesses should provide to consumers, nor does it specify the design and implementation practices that businesses may adopt.
Specific methods and technologies for implementing privacy protection.
2 Normative references
This document has no normative references.
3 Terms and Definitions
The following terms and definitions apply to this document.
3.1
consumer
A member of the public who purchases or uses property or products for private purposes.
Note 1."Consumers" (including the elderly, children, and the disabled) include both consumers and potential consumers. Consumer goods can be purchased on a one-time basis or under a long-term contract.
Note 2.This term applies only to natural persons and not to legal entities.
Note 3 to entry. Property, product or service (3.4) purchased or used by a consumer is not limited to private use but can also be used for professional purposes (e.g. bring your own device).
[Source. GB/T 36000-2015, 3.19, with modifications]
3.2
Personal information
Information that can be used to establish a connection between the information and the relevant natural person, or that can be directly or indirectly associated with a natural person
information.
Note 1.To determine whether the subject of personal identity information is identifiable, it is necessary to consider whether the privacy stakeholders or any other party holding the data can reasonably
All means available to link PII to a natural person.
Note 2 to entry. Public cloud personally identifiable information processors (3.20) generally do not have explicit knowledge of the categories of information they process unless the cloud service customer makes this transparent.
[Source. ISO /IEC.19944-1.2020, 3.3.1, with modifications]
3.3
privacy breach
Processing personally identifiable information (3.2) in violation of one or more relevant privacy protection requirements (3.9).
[Source. ISO /IEC 29100.2024, 2.13]
3.4
service
one or more activities provided to satisfy the interests or needs of consumers (3.1)
Note 1 to entry. Services are generally intangible.
...