How can a Data Fiduciary obtain verifiable parental consent for a child?
Answer:
The Data Fiduciary must adopt appropriate technical and organisational measures to ensure the person giving consent is the parent or lawful guardian and is an identifiable adult. This can be done by checking reliable identity and age details already available with the fiduciary, or details voluntarily provided, or a virtual token mapped to such details issued by an authorised entity such as a Digital Locker service provider.
verifiable parental consent child identity age virtual token digilocker
Related Questions:
- By when do organizations need to technically integrate with Board-registered Consent Managers?
- Is the consent notice required to give contact details?
- What makes consent valid under Section 6 of the DPDP Act?
- Must a Data Fiduciary maintain data accuracy?
- What is the right to correction and erasure?
- How are DPDP penalties determined by the Board?