Last reviewed on 10 May 2022
School types: All · School phases: All
Ref: 32870

Find out what questions you can ask your data protection officer (DPO) and what to look for in the answers, so you're confident your school's compliant.

Need a UK GDPR refresh? Get a handle on the UK GDPR with our summary.

Ask for a UK GDPR report to governors

Your school should have a data protection officer (DPO) who takes responsibility for monitoring data protection compliance and has the knowledge, support and authority to do so effectively.

They should report to you on data protection matters, so you can assure yourself that your school or trust is compliant with the UK GDPR. If you haven't received a data protection report, ask for one. 

Here's a template report so you know what you need to see:

Bear in mind that your DPO can report in whatever format they choose, so yours might look a little different from our template.

Receive a UK GDPR report at least annually Are updated whenever there is a data breach or other important