Organization for Economic Cooperation and Development (OECD)

Intergovernmental economic organization founded to boost economic progress and world trade.

OECD is a forum of countries describing themselves as committed to democracy and the market economy, providing a platform to compare policy experiences, seek answers to common problems, identify good practice and coordinate domestic and international policies of its members.

The privacy principles defined by the OECD consist of the following:

  • Collection limitation: data collection should occur only with the knowledge and consent of a concerned individual (data subject).
  • Data quality: you should only collect information which is relevant and accurate for a particular aim.
  • Individual participation: the concerned individual should know if their information has been collected and must be able to access it if such data exists.
  • Purpose specification: the intended use for a particular piece of information must be known at the time of collection.
  • Use limitation: collected data must not be used for purposes other than the ones specified at the time of collection.
  • Security safeguards: reasonable measures must be taken to protect data from unauthorized use, destruction, modification, or disclosure of personal information.
  • Openness: individuals should be able to avail themselves of data collection and be able to contact the entity collecting this information.
  • Accountability: data collector should be held accountable for failing to abide by any of the above rules. There needs to be a dedicated person.

Read more about the OECD on the Piwik PRO blog:

OECD guidelines: 8 privacy principles to live by


  • 4 ways to make your analytics HIPAA-compliant: Implementation guide

    Healthcare organizations have four main approaches to achieving HIPAA-compliant analytics. Each has different trade-offs in cost, technical complexity, and analytics capabilities. This guide compares all four implementation methods – from using Google Analytics with workarounds to deploying fully HIPAA-compliant analytics platforms – so you can choose the right approach for your organization’s needs and resources.

  • Is Google Analytics HIPAA-compliant?

    If you use Google Analytics or similar software, you’re likely already optimizing your website to serve your customers better. But what about Google Analytics and HIPAA compliance? In short – if you’re a HIPAA-covered entity, using GA4 puts you at serious risk of a HIPAA breach. Google states that Google Analytics doesn’t satisfy HIPAA requirements. And…