Consistency Mechanism
The consistency mechanism is a cooperation procedure that helps EU data protection authorities reach aligned outcomes so that the GDPR is applied in a similar way across the Union. It is used in particular when supervisory authorities need to coordinate on measures that could produce legal effects, and it provides a route to resolve disagreements between them. This entry describes the mechanism generally; readers should verify procedural specifics against the current official text.
Under the GDPR, the consistency mechanism is the framework through which supervisory authorities cooperate, and where necessary the European Data Protection Board (EDPB) acts, to promote the consistent application of the Regulation throughout the Union. Article 63 GDPR establishes the general duty of supervisory authorities to cooperate with each other (and, where relevant, with the Commission) to this end, and related provisions govern how the mechanism operates in specific situations. Recital 135 indicates that the mechanism should apply in particular where a supervisory authority intends to adopt a measure intended to produce legal effects as regards processing; the specific triggering circumstances and procedural steps are set out in the GDPR text and should be verified there. The EDPB maintains coordination at Union level so that certain national decisions adopted by supervisory authorities are consistent with one another. The scope of this entry is limited to the EU GDPR consistency mechanism; it does not address any distinct equivalent under the UK GDPR, and it is unrelated to the term 'consistency model' used in distributed computing. The precise interaction with dispute resolution, opinions, and binding decisions of the EDPB should be checked against the applicable articles and current EDPB guidance, as procedural detail may evolve.
Why it matters
The GDPR is a single Regulation applied by many national supervisory authorities across the EU, which creates a risk that the same or similar processing could be treated differently depending on which authority acts. The consistency mechanism exists to reduce that divergence, promoting a more uniform application of the Regulation throughout the Union. For organisations operating across multiple member states, this coordination matters because it influences whether the interpretations and measures they face are aligned rather than fragmented across borders.
The mechanism is particularly significant where a supervisory authority intends to adopt a measure intended to produce legal effects as regards processing, as indicated in Recital 135. In those situations, coordination at Union level, with the European Data Protection Board (EDPB) acting where relevant, helps ensure that certain national decisions adopted by data protection authorities are consistent with one another. It also provides a route to address disagreements between authorities, which supports predictability for controllers and processors and for the individuals whose personal data is being processed.
Because procedural detail may evolve and the precise interaction with EDPB opinions and binding decisions should be checked against the applicable articles and current guidance, readers should treat this entry as a general orientation rather than a definitive procedural map. The specific triggering circumstances and steps must be verified against the current official GDPR text.
Who it's relevant to
Inside Consistency Mechanism
Common questions
Answers to the questions practitioners most commonly ask about Consistency Mechanism.