PRESENTATION
Comply with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data - the "GDPR".
Regulations
The GDPR came into force on May 25, 2018.
In particular, it applies to all processing of personal data, whether wholly or partly automated, if the data controllers and processors are based in the E.U., or if the processing of personal data relates to persons within the territory of the European Union.
In this respect, your solutions must comply with the principles of "Privacy by Design" and "Privacy by Default" as soon as they are implemented on your customers' sites, particularly with regard to data security, integrity and availability, archiving, purging and updating, proof of consent, information to individuals, data minimization, etc.
This obligation therefore applies to all publishers.
GDPR certification in detail.
GDPR certification (NF552) aims to guarantee software compliance with the requirements of the General Data Protection Regulation (GDPR) in force since May 2018. It certifies that software complies with technical requirements and good practices in terms of personal data protection.
This GDPR certification covers all aspects of personal data management, including data collection, storage, processing, transmission, destruction and archiving. It applies to all software managing personal data in all types of companies and organizations, whether public or private.
NF552-certified software undergoes regular audits to ensure that it continues to meet regulatory requirements.
Users of this software can therefore be sure that the personal data they manage is protected in accordance with current legal requirements.
In short, NF552 certification is a way for software publishers to ensure that their solution complies with GDPR requirements and that they protect their users' personal data.
Risks and penalties for non-compliance with regulations.
Penalties imposed by the CNIL can amount, depending on the category of infringement, to 10 or 20 million euros or 2% or 4% of worldwide annual sales for the previous financial year (Art.83 of the GDPR).
If you act as a subcontractor or if the CNIL classifies you as a joint data controller with your customers, damages and interest could be claimed from you by your customers and/or the individuals concerned if the non-compliance of your solutions causes them harm (damage to image, invasion of privacy, financial loss, etc.).
FREQUENTLY ASKED QUESTIONS
GDPR software certification: frequently asked questions.
INFOCERT is the French specialist in software certification.
Technical secretariat ofAFNOR Certification and inspection body, INFOCERT develops numerous NF marks, a guarantee of quality, safety and confidence, including the NF525 which provides a lasting competitive advantage.
INFOCERT has hundreds of certified partners all over the world, from world-renowned publishers to smaller companies with integrated IT departments.
Certifying that your software is GDPR compliant allows you to demonstrate to customers, partners and authorities that you take the protection of personal data seriously. This boosts user and customer confidence in your company and gives you a competitive edge over those that aren't GDPR-certified.
As a reminder, as a software publisher, you have a dual responsibility: your solutions must comply with the GDPR, otherwise the processing implemented by your customers who use them will, themselves, be non-compliant. When you supply your solutions, it's your direct responsibility to ensure their compliance with the GDPR.
Using certified software enables you to meet regulatory requirements, and gives you peace of mind thanks to the presumption of conformity linked to INFOCERT's intervention as a third-party witness.
From September 1, 2026, and according to a precise roll-out schedule, all French companies will eventually be obliged to receive and issue invoices on or from a Public Billing Portal (PPF) or Partner Dematerialization Platforms (PDP).
This electronic invoicing reform represents a real fiscal upheaval, and that's why it's crucial to prepare for it in order to best anticipate the changes to come.
If you'd like to prepare youCSRlf for this, you'll find plenty of information in our special report, or you can take part in one of our dedicated training couCSRs. Please contact us to find out more.
To be certified is to be part of a process of transparency, improvement and continuous evolution of your software.
The duration of the process is linked to the time it will take you to bring your software into compliance with the specifications. This time can vary from 1 to several months, and a certificate of effective progress can be sent to you while your product is being brought into compliance.
The certification audit generally lasts two days.
THE BENEFITS OF CERTIFICATION
Why get your POS Software certified?
+ Justify compliance
of its software and cover itself against potential penalties in the event of non-compliance with regulations.
+ Optimize practices and processes
through requirements linked to internal processes, user documentation, after-sales service, etc.
+ Open up to new markets
benefiting from recognized certifications that may be required for certain types of tender.
+ Benefit from recognition
of the NF mark, which inspires quality, confidence and safety, both in France and abroad.
+ Keep abreast of developments
and to have a product that is regularly updated thanks to the checks carried out during annual surveillance.
+ Improve the quality of your software
in response to quality requirements - notably stemming from ISO 9001 and ISO 25051 standards.
The certification rules drawn up by INFOCERT, in conjunction with AFNOR Certification, are recognized as references.
CONTACT US
If you have any questions on a training, labeling or certification project, please don't hesitate to contact us.
Quick links
- (+33) 1.40.17.04.05
- contact@infocert.org
Copyright © 2024 INFOCERT. All rights reserved.