AIRiskAware
AI Governance Glossary
Governance Concept

What Is Profiling?

Profiling is any automated processing of personal data to evaluate, analyse, or predict aspects of a person, such as their performance, economic situation, health, preferences, or behaviour.

Definition

Profilingany automated processing of personal data to evaluate, analyse, or predict aspects of a person, such as their performance, economic situation, health, preferences, or behaviour.

Profiling is a defined term in the GDPR (Article 4(4)) and sits at the heart of AI privacy regulation, because most AI systems that make decisions about people rely on it. Profiling is lawful but regulated: it triggers transparency obligations, and where it forms part of solely automated decisions with legal or similarly significant effects, the additional protections of GDPR Article 22 apply. Australian and other privacy regimes are introducing comparable controls.

Source: GDPR, Articles 4(4) and 22

Plain-language explanation

Profiling is a defined term in the GDPR (Article 4(4)) and sits at the heart of AI privacy regulation, because most AI systems that make decisions about people rely on it. Profiling is lawful but regulated: it triggers transparency obligations, and where it forms part of solely automated decisions with legal or similarly significant effects, the additional protections of GDPR Article 22 apply. Australian and other privacy regimes are introducing comparable controls.

Primary source: GDPR, Articles 4(4) and 22

See where you stand on AI governance

Take the free 7-question maturity assessment and get a personalised action plan.

Free assessment — 3 minutes →