Written question asked by James McMurdock (Independent (affiliation)) on Thursday, 9 July 2026, in the House of Commons. It was due for an answer on Monday, 13 July 2026. It was answered by Kanishka Narayan (Labour) on Monday, 20 July 2026 on behalf of the Department for Science, Innovation and Technology.
Data Protection: Age Assurance
- Question
-
To ask the Secretary of State for Science, Innovation and Technology, pursuant to Answer of 7 July 2026 to Question 14208, what guidance her Department has issued on the maximum period for which personal data collected for age assurance purposes should be retained.
- Answer
-
The government takes the threats of cyber-attacks and data breaches very seriously, which is why the ICO has the power to investigate any concerns raised about the misuse or mishandling of data. It can issue enforcement notices and substantial fines where organisations are found to be in breach of their obligations.
Organisations are required under UK GDPR and the Data Protection Act to keep personal data secure and process it fairly, lawfully, and transparently. Whilst the law does not set specific time limits on how long personal data can be held, it stipulates that it cannot be kept for longer than needed.
Secondary information
- Type
- Written question
- Reference
- 17688
- Session
- 2026-27
- Related items
- Grouped for answer
- Yes
- Subjects
- Data protection Personal records Age assurance
- Link
- View this Written question on www.parliament.uk
Librarians' tools
- Timestamp
- 2026-07-20 08:55:13 +0100
- URI
- http://data.parliament.uk/writtenparliamentaryquestion/commons/2026-27/17688
- In Indexing
- http://indexing.parliament.uk/Content/Edit/1?uri=http://data.parliament.uk/writtenparliamentaryquestion/commons/2026-27/17688
- In Solr
- https://search.parliament.uk/claw/solr/?id=http://data.parliament.uk/writtenparliamentaryquestion/commons/2026-27/17688