Machine-Readable Format
A machine-readable format is a way of storing data so that a computer can read and process it automatically, without a person having to interpret it first. Common examples include file types such as CSV, JSON, and XML. This contrasts with formats designed mainly for human reading, which computers cannot reliably process on their own.
A machine-readable format refers to a structured data format that can be automatically read and processed by a computer without human intervention, while preserving the data's semantic meaning. Typical examples cited in guidance include CSV, JSON, and XML, which represent data as structured rather than unstructured content. In a data protection context, this concept is relevant to certain data subject rights, such as data portability, which in the GDPR generally requires personal data to be provided in a structured, commonly used, and machine-readable format; practitioners should verify the precise requirements against the current text of the relevant GDPR provision, as the sources in this packet do not themselves set out the Regulation's wording. The definitions here derive from technical and open-data glossaries rather than from the GDPR itself, so their scope may differ from any legal definition applied under EU or UK data protection law.
Why it matters
Machine-readable format matters in data protection because certain data subject rights depend on it. In the GDPR, the right to data portability generally requires that personal data be provided in a structured, commonly used, and machine-readable format so that individuals can reuse it or have it transmitted to another controller. If an organisation exports personal data only as unstructured content, such as a scanned document or a format designed primarily for human reading, it may not satisfy this requirement. Practitioners should verify the precise wording and scope against the current text of the relevant GDPR provision, as the sources in this packet describe machine-readability from a technical and open-data perspective rather than a legal one.
The practical significance lies in interoperability. A machine-readable export allows data to move between systems and controllers with minimal manual handling, which supports the underlying policy aim of giving individuals greater control over their personal data. Where data is locked in proprietary or human-oriented formats, the effort and cost of reuse can undermine that aim in practice, even if a copy of the data has technically been provided.
Because the definitions used here derive from technical and open-data glossaries rather than the Regulation itself, the boundary of what qualifies as machine-readable in a legal sense may differ from these technical descriptions. Regulators and guidance may interpret the requirement in ways not fully captured by a purely technical definition, so the concept should be applied with reference to current official sources rather than treated as settled by the technical glossaries alone.
Who it's relevant to
Inside Machine-Readable Format
Common questions
Answers to the questions practitioners most commonly ask about Machine-Readable Format.