General Data Protection Regulation. A regulation (set of rules) drafted by the EU. All EU Member States must follow these rules. It sets out rules for data protection and privacy for all individuals within the EU. The GDPR includes rules for how physical or legal persons may process personal data.