Instrument 9 | B. Data Privacy / Data Protection / Data Governance

RULECONSULTATIONDRAFTSUPERSEDED / EARLIER VERSION

Draft Digital Personal Data Protection Rules, January 2025

MeitY / Central Government draft under Section 40 DPDP Act2025ConsultationGeneral

AI / PRIVACY / CYBER RELEVANCE

Useful only for legislative history and comparison with final Rules.

AI: ModeratePrivacy: HighCybersecurity: Moderate

READ FIRST

  • Draft Rule 3 notice
  • draft security / breach / rights provisions
  • compare with final 2025 Rules

PURVIEW

Records the January 2025 proposed implementation architecture for the DPDP regime before the final Rules were notified. It is useful principally as legislative and regulatory history, showing how the Government originally proposed to operationalise notices, consent, security safeguards, breach management, children’s data, rights, retention and related processes. For AI and privacy analysis, its value lies in comparison: organisations and researchers can identify which compliance mechanisms were retained, modified or omitted in the final Rules and understand the policy direction behind the eventual framework.

Classification and legal status. Non-binding draft / consultation text; never the operative final Rules.

Open document Download PDF Copyright remains with the publishing authority. For informational purposes only.

Read the official document

This browser cannot display the PDF in the page. Open the document or download the PDF.

Keywords

draft rulesconsultationlegislative history

Source note

Official MeitY Gazette draft reviewed.

Legal status indicates whether this resource is legislation, delegated regulation, regulatory direction, guidance, policy, research or technical material. Inclusion in this library does not by itself make a document legally binding.

This tool provides research navigation only and does not constitute legal advice or a determination of legal applicability.

Back to the framework library