PRESENTATION

Comply with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data - the "GDPR".

GDPR certification in detail.

GDPR certification (NF552) aims to guarantee software compliance with the requirements of the General Data Protection Regulation (GDPR) in force since May 2018. It certifies that software complies with technical requirements and good practices in terms of personal data protection.

This GDPR certification covers all aspects of personal data management, including data collection, storage, processing, transmission, destruction and archiving. It applies to all software managing personal data in all types of companies and organizations, whether public or private.

NF552-certified software undergoes regular audits to ensure that it continues to meet regulatory requirements.

Users of this software can therefore be sure that the personal data they manage is protected in accordance with current legal requirements.

In short, NF552 certification is a way for software publishers to ensure that their solution complies with GDPR requirements and that they protect their users' personal data.

Risks and penalties for non-compliance with regulations.

Penalties imposed by the CNIL can amount, depending on the category of infringement, to 10 or 20 million euros or 2% or 4% of worldwide annual sales for the previous financial year (Art.83 of the GDPR).

If you act as a subcontractor or if the CNIL classifies you as a joint data controller with your customers, damages and interest could be claimed from you by your customers and/or the individuals concerned if the non-compliance of your solutions causes them harm (damage to image, invasion of privacy, financial loss, etc.). 

FREQUENTLY ASKED QUESTIONS

GDPR software certification: frequently asked questions.

INFOCERT is the French specialist in software certification.

Technical secretariat ofAFNOR Certification and inspection body, INFOCERT develops numerous NF marks, a guarantee of quality, safety and confidence, including the NF525 which provides a lasting competitive advantage. 

 

INFOCERT has hundreds of certified partners all over the world, from world-renowned publishers to smaller companies with integrated IT departments.

Certifying that your software is GDPR compliant allows you to demonstrate to customers, partners and authorities that you take the protection of personal data seriously. This boosts user and customer confidence in your company and gives you a competitive edge over those that aren't GDPR-certified.

As a reminder, as a software publisher, you have a dual responsibility: your solutions must comply with the GDPR, otherwise the processing implemented by your customers who use them will, themselves, be non-compliant. When you supply your solutions, it's your direct responsibility to ensure their compliance with the GDPR.

Using certified software enables you to meet regulatory requirements, and gives you peace of mind thanks to the presumption of conformity linked to INFOCERT's intervention as a third-party witness.

From September 1, 2026, and according to a precise roll-out schedule, all French companies will eventually be obliged to receive and issue invoices on or from a Public Billing Portal (PPF) or Partner Dematerialization Platforms (PDP).

This electronic invoicing reform represents a real fiscal upheaval, and that's why it's crucial to prepare for it in order to best anticipate the changes to come.

If you'd like to prepare youCSRlf for this, you'll find plenty of information in our special report, or you can take part in one of our dedicated training couCSRs. Please contact us to find out more.

To be certified is to be part of a process of transparency, improvement and continuous evolution of your software.

The duration of the process is linked to the time it will take you to bring your software into compliance with the specifications. This time can vary from 1 to several months, and a certificate of effective progress can be sent to you while your product is being brought into compliance.

The certification audit generally lasts two days.

Resources

THE BENEFITS OF CERTIFICATION

Why get your POS Software certified?

+ Justify compliance

of its software and cover itself against potential penalties in the event of non-compliance with regulations.

+ Optimize practices and processes

through requirements linked to internal processes, user documentation, after-sales service, etc.

+ Open up to new markets

benefiting from recognized certifications that may be required for certain types of tender.

+ Benefit from recognition

of the NF mark, which inspires quality, confidence and safety, both in France and abroad.

+ Keep abreast of developments

and to have a product that is regularly updated thanks to the checks carried out during annual surveillance.

+ Improve the quality of your software

in response to quality requirements - notably stemming from ISO 9001 and ISO 25051 standards.

The certification rules drawn up by INFOCERT, in conjunction with AFNOR Certification, are recognized as references.

CONTACT US

If you have any questions on a training, labeling or certification project, please don't hesitate to contact us.