Focus 1
Outbound trigger
Look beyond incorporation when you target users, sell locally, collect local personal information, run campaigns, or host regulated sector workflows outside Europe.
Open related pageNon-EU privacy, personal information, electronic marketing, cross-border transfer, and child-data rules for EU-incorporated software teams serving global users.
Focus 1
Look beyond incorporation when you target users, sell locally, collect local personal information, run campaigns, or host regulated sector workflows outside Europe.
Open related pageFocus 2
Access, correction, deletion, portability, opt-out, consent, and breach notification duties vary by country and often require operational request handling.
Focus 3
Email, SMS, push messages, tracking, children, and advertising can trigger separate laws even before a user becomes a paying customer.
Focus 4
Cross-border transfer notices, onward transfer contracts, processor terms, localization questions, and security measures are the main early design checks.
Commercial electronic messages, unsubscribe flows, or software installation touching Canada.
Canada CASLOffering goods or services in Brazil, processing data in Brazil, or using data collected in Brazil.
ANPDCarrying on business in Australia or handling Australian personal information.
OAIC Privacy ActHandling personal information of people in Japan or cross-border transfers involving Japan.
PPC JapanPersonal information processing tied to Korean users, local services, AI privacy, or Korean business operations.
PIPC KoreaNew Zealand users, privacy breach handling, access/correction requests, or overseas disclosure.
NZ Privacy ActSouth African personal information, direct marketing, operator relationships, or local customer operations.
Information RegulatorMexican personal data, privacy notices, ARCO rights requests, consent, sensitive data, or transfers.
INAI Mexico