Path: Home > GB/T > Page207 > GB/T 42017-2022 || Home > Standard_List > GB/T > Page207 > GB/T 42017-2022
Price & DeliveryUS$549.00 · In stock Delivery: <= 5 days. True-PDF full-copy in English will be manually translated and delivered via email. GB/T 42017-2022: Information security technology - Data security requirements for online ride-hailing services Status: Valid
| Std ID | Contents [version] | USD | STEP2 | [PDF] delivered in | Standard Title (Description) | Status |
| GB/T 42017-2022 | English | 549 |
Add to Cart
|
5 days [Need to translate]
|
Information security technology - Data security requirements for online ride-hailing services
| Valid |
Standard similar to GB/T 42017-2022 GB/T 42447 | GB 42250 | GB/T 41871 | GB/T 42013 | GB/T 42012 |
Basic data | Standard ID | GB/T 42017-2022 (GB/T42017-2022) | | Description (Translated English) | Information security technology - Data security requirements for online ride-hailing services | | Sector / Industry | National Standard (Recommended) | | Classification of Chinese Standard | L80 | | Classification of International Standard | 35.030 | | Word Count Estimation | 30,361 | | Date of Issue | 2022-10-14 | | Date of Implementation | 2023-05-01 | | Issuing agency(ies) | State Administration for Market Regulation, China National Standardization Administration |
GB/T 42017-2022: Information security technology - Data security requirements for online ride-hailing services ---This is a DRAFT version for illustration, not a final translation. Full copy of true-PDF in English version (including equations, symbols, images, flow-chart, tables, and figures etc.) will be manually/carefully translated upon your order.
Information security technology -- Data security requirements for online ride-hailing services
ICS 35.030
CCSL80
National Standards of People's Republic of China
Information Security Technology
Data security requirements for online car booking services
Published on 2022-10-12
2023-05-01 Implementation
State Administration for Market Regulation
Released by the National Standardization Administration
directory
Preface III
1 Scope 1
2 Normative references 1
3 Terms and Definitions 1
4 Abbreviations 2
5 Overview 2
5.1 Composition of online car reservation service business 2
5.2 Data Scope of Online Booking Car Service 3
6 Basic requirements 3
7 Data collection 4
7.1 Collection of personal information4
7.2 Applying for system permissions 4
7.3 Informed consent4
8 Data storage 4
9 Data use and processing5
9.1 Data Access Control 5
9.2 Display of personal information5
9.3 User portrait use 5
9.4 Use of driver credit history 6
10 Data provision and disclosure6
10.1 Data provision 6
10.2 Public disclosure of illegal information 7
11 Data Exit 7
12 Passenger and Driver Personal Information Rights7
12.1 Access and copying of personal information7
12.2 Correction or Supplement of Personal Information 8
12.3 Personal Information Complaints8
12.4 Individual Withdrawal of Consent8
12.5 Deletion of personal information 8
12.6 Cancellation of accounts by passengers and drivers8
13 Data security requirements for audio and video recordings of the itinerary9
13.1 Basic requirements for data security of audio and video recordings of the itinerary 9
13.2 Collection of audio and video recordings of the trip 9
13.3 The use of audio and video recordings of the trip 9
13.4 Storage and deletion of audio and video recordings of the trip 9
Appendix A (Informative) Online Car Booking Service Data Processing Activities and Data Security Risks 10
Appendix B (Informative) Reference Rules and Data Classification Examples for Important Data Identification of Online Car Booking Service 12
Appendix C (Informative) Personal Information of Drivers and Common Extended Business Functions Collection of Personal Information Scope and Usage Requirements 15
Appendix D (Informative) Scope of Application for Permissions and Usage Requirements of the App-related System for Online Car Booking Service 17
Appendix E (Informative) Sample Trip Recording Collection Protocol Template 19
Appendix F (Informative) Data Security Protection Requirements for Complaint Handling Scenarios 20
Appendix G (Informative) Example of Data Desensitization Rules for Online Car Booking Service 21
Appendix H (Informative) Example 22
Reference 25
foreword
This document is in accordance with the provisions of GB/T 1.1-2020 "Guidelines for Standardization Work Part 1.Structure and Drafting Rules of Standardization Documents"
drafted.
Please note that some content of this document may be patented. The issuing agency of this document assumes no responsibility for identifying patents.
This document is proposed and managed by the National Information Security Standardization Technical Committee (SAC/TC260).
This document was drafted by. China Electronics Standardization Institute, Beijing Xiaoju Technology Co., Ltd., CLP Great Wall Internet System Application Co., Ltd.
Co., Ltd., China Network Security Review Technology and Certification Center, Beijing Information Security Evaluation Center, Beijing Sankuai Online Technology Co., Ltd., Beijing
Baidu Netcom Technology Co., Ltd., Beijing Easy Travel Travel Co., Ltd., Beijing Holiday Sunshine Global Travel Agency Co., Ltd., Guangzhou Qichen Branch
Technology Co., Ltd., Shanghai Sike Travel Technology Service Co., Ltd., Tongcheng Network Technology Co., Ltd., National Computer Network Emergency Technology
Processing Coordination Center, the Third Research Institute of the Ministry of Public Security, China Academy of Information and Communications Technology, Institute of Information Engineering, Chinese Academy of Sciences, Chongqing University of Posts and Telecommunications,
Beijing Jingtian & Gongcheng Law Firm Shanghai Branch, Sanjie Information Technology Co., Ltd., Hangzhou Youxing Technology Co., Ltd., Nanjing Lingxing Technology
Co., Ltd.
The main drafters of this document. Shangguan Xiaoli, Hu Ying, Chen Shu, Sun Tie, Zhang Na, Fang Fangcheng, Xu Rui, Min Jinghua, Yang Jianjun, Li Haidong, Zhao Xinqiang,
Zhu Xuefeng, Wang Jiao, Li Yuan, Xu Jinghui, Song Ziyi, Guo Jianling, Wu Qinghua, Liu Qinhua, Ye Chuan, Li Yang, Ye Jun, Ni Chunjuan, Liu Huan, Chang Bohou,
Jiang Zhongzhi, Tang Di, Wang Wenlei, Qi Lin, Yuan Lizhi, Jiang Xinyan, Han Dongxu, Xu Guangxia, Xu Yuqing, Chen Guanghui, Zhang Zhiming, Zhang Jingling, Li Jingfeng,
Zhang Zhongwei.
Information Security Technology
Data security requirements for online car booking services
1 Scope
This document specifies the security of data processing activities such as the collection, storage, use, processing, provision, disclosure, and exit of online car reservation services
Require.
This document is applicable to the standard data processing activities of online car reservation service providers, and can also be used by regulatory authorities and third-party evaluation agencies for online
Provide reference for monitoring, management, and evaluation of online car reservation service data processing activities.
2 Normative references
The contents of the following documents constitute essential provisions of this document through normative references in the text. Among them, dated citations
documents, only the version corresponding to that date applies to this document; for undated references, the latest edition (including all amendments) applies to
this document.
GB/T 25069 Information Security Technical Terminology
GB/T 35273-2020 Information Security Technology Personal Information Security Specification
GB/T 37988 Information Security Technology Data Security Capability Maturity Model
GB/T 39335 Information Security Technology Personal Information Security Impact Assessment Guide
GB/T 41391-2022 Basic requirements for the collection of personal information by mobile Internet applications (Apps) of information security technology
GB/T 41479 Information Security Technology Network Data Processing Security Requirements
3 Terms and Definitions
The terms and definitions defined in GB/T 25069 and GB/T 35273-2020 and the following terms and definitions apply to this document.
3.1
Online car reservation service onlineride-hailingservice
Relying on Internet technology to build a service platform, integrate supply and demand information, and provide users with the operation of online booking car travel services
Activity.
Note. The online car booking service in this document mainly refers to the online taxi booking (referred to as "online car booking") service, excluding private passenger car sharing (commonly known as "shun").
Windmill”), ride-hailing freight and ride-hailing buses.
3.2
Integrate travel supply and demand information through network information technology, use qualified vehicles and drivers, and provide information on online car reservations
information system.
3.3
Organizations that provide online car booking services using the online car booking service platform.
Note. The online car reservation service provider in this document mainly refers to the operator of the online car reservation service platform.

Tips & Frequently Asked Questions:Question 1: How long will the true-PDF of GB/T 42017-2022_English be delivered?Answer: Upon your order, we will start to translate GB/T 42017-2022_English as soon as possible, and keep you informed of the progress. The lead time is typically 3 ~ 5 working days. The lengthier the document the longer the lead time. Question 2: Can I share the purchased PDF of GB/T 42017-2022_English with my colleagues?Answer: Yes. The purchased PDF of GB/T 42017-2022_English will be deemed to be sold to your employer/organization who actually pays for it, including your colleagues and your employer's intranet. Question 3: Does the price include tax/VAT?Answer: Yes. Our tax invoice, downloaded/delivered in 9 seconds, includes all tax/VAT and complies with 100+ countries' tax regulations (tax exempted in 100+ countries) -- See Avoidance of Double Taxation Agreements (DTAs): List of DTAs signed between Singapore and 100+ countriesQuestion 4: Do you accept my currency other than USD?Answer: Yes. If you need your currency to be printed on the invoice, please write an email to Sales@ChineseStandard.net. In 2 working-hours, we will create a special link for you to pay in any currencies. Otherwise, follow the normal steps: Add to Cart -- Checkout -- Select your currency to pay.
|