Cleo
CompanyLegal Data
Request a demo
Anaelle GuezNaomie Halioua
Request a demo
Cleo

AI-powered regulatory intelligence.

contact@cleolabs.co

Solutions

  • Product Compliance

Company

  • About
  • Research
  • Blog
  • Compliance Guides

Jurisdictions

  • 🇪🇺 European Union
  • 🇫🇷 France
  • 🇩🇪 Germany
  • 🇬🇧 United Kingdom
  • 🇺🇸 United States

Legal

  • Privacy
  • Terms
  • Security

Events

  • VivaTech ParisJun 11–14, 2026

© 2026 Cleo Labs. All rights reserved.

GDPREU DataSOC 2 Type IIISO 27001
🇺🇸United StatesActive

GDPR compliance in the US

The GDPR applies to any organization processing personal data of EU residents, regardless of where the organization is based.

Start free scan
Anaelle GuezNaomie Halioua
or book a call

Enforcement authority

National Data Protection Authority

Maximum sanctions

Up to 4% of global annual turnover or EUR 20 million, whichever is greater.

Obligations

Key obligations

What GDPR requires from organizations operating in the US.

Appoint a Data Protection Officer (DPO) where required
Maintain records of processing activities (ROPA)
Conduct Data Protection Impact Assessments (DPIA)
Implement data breach notification within 72 hours
Ensure lawful basis for all data processing

Local context

Local context in the US

Enforcement varies by member state. Some DPAs are more active than others.

Connects to

GDPR by industry in the US

Retail & Consumer GoodsCosmetics & Personal CareElectronics & Connected DevicesFood & BeveragePet Care & Pet FoodSporting GoodsMedical DevicesDrugs & PharmaceuticalsInsuranceEnergy & Utilities

Frequently asked questions

How does GDPR apply in the US?

The GDPR applies to any organization processing personal data of EU residents, regardless of where the organization is based.

Who enforces GDPR in the US?

National Data Protection Authority

What are the penalties for GDPR non-compliance?

Up to 4% of global annual turnover or EUR 20 million, whichever is greater.

Read our complete GDPR compliance guide

GDPR in other jurisdictions

🇪🇺European Union🇫🇷France🇩🇪Germany🇬🇧United Kingdom🇧🇷Brazil🇦🇺Australia🇮🇳India

Check your GDPR compliance now

Start free scan to see your risk score and applicable obligations.

Start with 1 product
Start free scan
Anaelle GuezNaomie Halioua
or book a call