{"id":298,"date":"2022-12-20T09:57:37","date_gmt":"2022-12-20T09:57:37","guid":{"rendered":"https:\/\/humanata.ca\/blog\/?p=298"},"modified":"2022-12-20T09:59:15","modified_gmt":"2022-12-20T09:59:15","slug":"why-pipeda-compliance-is-important-for-nonprofit-organizations","status":"publish","type":"post","link":"https:\/\/www.humanata.ca\/blog\/2022\/12\/why-pipeda-compliance-is-important-for-nonprofit-organizations\/","title":{"rendered":"Why PIPEDA Compliance Is Important for Nonprofit Organizations?"},"content":{"rendered":"\n<p class=\"has-medium-font-size\">How anyone\u2019s private information is handled in today\u2019s time poses a big question for everyone, including non-profit organizations and charitable organizations.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-andrea-piacquadio-3760514-1024x754.jpg\" alt=\"private information\" class=\"wp-image-299\" width=\"768\" height=\"566\" srcset=\"https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-andrea-piacquadio-3760514-1024x754.jpg 1024w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-andrea-piacquadio-3760514-300x221.jpg 300w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-andrea-piacquadio-3760514-768x565.jpg 768w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-andrea-piacquadio-3760514-1536x1130.jpg 1536w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-andrea-piacquadio-3760514-2048x1507.jpg 2048w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/figure>\n\n\n\n<p class=\"has-medium-font-size\">Generally, non-profits such as charities, clubs, community groups, and associations find some relief regarding <strong>PIPEDA<\/strong> (Personal Information Protection and Electronic Documents Act). However, non-profits that deal with commercial activities are subject to PIPEDA and must strictly comply with it.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">PIPEDA specifically applies to employment in federal works, undertakings, or businesses.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">According to Canada\u2019s PIPEDA Act, any activity which includes transaction, sale, barter, fundraisers, and leasing of donors or membership classifies under commercial activity.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">PIPEDA came into existence on January 1, 2004. PIPEDA is the privacy law of Canada that was brought into effect to protect the collection, utilization, and disclosure of personal information regarding commercial activities.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">Read our previous blog, &#8220;<a href=\"https:\/\/humanata.ca\/blog\/index.php\/2022\/11\/30\/how-to-comply-with-pipeda-while-doing-business-in-c\/\"><strong>How to Comply with PIPEDA When Doing Business in Canada?<\/strong>&#8220;<\/a> for a more in-depth understanding of PIPEDA.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">Let\u2019s understand why <strong>non-profits<\/strong> must adhere to PIPEDA in depth through this blog.<\/p>\n\n\n\n<h1 class=\"has-medium-font-size wp-block-heading\"><a href=\"https:\/\/humanata.ca\/blog\/index.php\/2022\/11\/30\/how-to-comply-with-pipeda-while-doing-business-in-c\/\">Understanding PIPEDA in detail<\/a><\/h1>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large is-resized\"><a href=\"https:\/\/humanata.ca\/\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-pixabay-39584-1024x683.jpg\" alt=\"PIPEDA\" class=\"wp-image-300\" width=\"768\" height=\"512\" srcset=\"https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-pixabay-39584-1024x683.jpg 1024w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-pixabay-39584-300x200.jpg 300w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-pixabay-39584-768x512.jpg 768w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-pixabay-39584-1536x1024.jpg 1536w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-pixabay-39584-2048x1365.jpg 2048w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/a><\/figure>\n\n\n\n<p class=\"has-medium-font-size\"><strong>PIPEDA applies to the following:<\/strong><\/p>\n\n\n\n<ul class=\"has-medium-font-size wp-block-list\"><li>Any organization that gathers uses, or reveals personal information to people must do it with people\u2019s consent.&nbsp;<\/li><li>The organization can only disclose personal data for the reason it has earned the concerned person\u2019s consent.<\/li><li>The organization must only collect relevant data that the people find appropriate under the circumstances.<\/li><li>People have the right to see what personal data is held about them and request rectification in case of inaccuracies.<\/li><\/ul>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Personal information about an individual refers to the following:<\/strong><\/p>\n\n\n\n<ul class=\"has-medium-font-size wp-block-list\"><li>Personal identification numbers, individual\u2019s name, blood group, and gender.<\/li><li>Loan and credit records, wealth, and income information.<\/li><li>Dispute between consumer and an organization.<\/li><li>Intention to acquire goods, services, evaluations, and opinions.<\/li><\/ul>\n\n\n\n<p class=\"has-medium-font-size\">However, exemptions are made to the business title, business number, business address, or whatever else is given on the business card.<\/p>\n\n\n\n<h2 class=\"has-medium-font-size wp-block-heading\"><strong>What does PIPEDA comprise?<\/strong><\/h2>\n\n\n\n<p class=\"has-medium-font-size\">PIPEDA comprises ten principles:<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>First Principle \u2013 Accountability<\/strong><br>An organization holds the sole responsibility to safeguard the personal data of the clients.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Second Principle \u2013 Recognizing the purposes<\/strong><br>Before collecting personal data, an organization must identify why it should collect or retain any particular type of personal information.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Third Principle \u2013 Consent<\/strong><br>This is one of the key principles of PIPEDA which specifies that an individual\u2019s data cannot be collected unless the consent of the individual is taken.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Fourth Principle \u2013 Limiting collection<\/strong><br>This principle regulates the collection of personal information as per the purposes identified.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Fifth Principle \u2013 Limiting Use, disclosure, and retention<\/strong><br>Organizations under PIPEDA must not disclose personal data outside the scope of its purposes.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Sixth Principle \u2013 Accuracy<\/strong><br>An organization must always ensure that the personal data collected and retained is accurate and if not then must be rectified.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Seventh Principle \u2013 Safeguards<\/strong><br>Following this principle, an organization must protect personal data by adopting necessary measures.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Eighth Principle \u2013 Openness<\/strong><br>An organization must remain transparent regarding its data collection and usage.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Ninth Principle \u2013 Individual access<\/strong><br>An organization must make provisions for individuals to access their data as needed.<br><br><strong>Tenth Principle \u2013 Challenging compliance<\/strong> An organization must be ready to respond to challenges.<\/p>\n\n\n\n<h2 class=\"has-medium-font-size wp-block-heading\"><strong>When PIPEDA applies to non-profits?<\/strong><\/h2>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-anna-shvets-5324941-1-1024x683.jpg\" alt=\"When PIPEDA applies to non-profits?\" class=\"wp-image-301\" width=\"768\" height=\"512\" srcset=\"https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-anna-shvets-5324941-1-1024x683.jpg 1024w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-anna-shvets-5324941-1-300x200.jpg 300w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-anna-shvets-5324941-1-768x512.jpg 768w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-anna-shvets-5324941-1-1536x1024.jpg 1536w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/pexels-anna-shvets-5324941-1-2048x1365.jpg 2048w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/figure>\n\n\n\n<p class=\"has-medium-font-size\">It is to be noted that charities and non-profits are not exempt from PIPEDA. Any organization that collects data uses, or discloses it for commercial activity must adhere to PIPEDA.<\/p>\n\n\n\n<p>Further, non-profits in some provinces might be subject to provincial legislation such as Quebec, Alberta, Ontario, British Columbia, and others.<\/p>\n\n\n\n<h2 class=\"has-medium-font-size wp-block-heading\"><strong>Why should non-profits be compliant with PIPEDA?<\/strong><\/h2>\n\n\n\n<p class=\"has-medium-font-size\">The reason why charities and non-profits must adhere to PIPEDA guidelines lies in the increased awareness of stakeholders. Not only is this, but the increased knowledge of people around privacy, transparency, and accountability nowadays compelling non-profits to remain PIPEDA compliant.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">Clients and stakeholders expect non-profit organizations to be accountable for storing their data and keeping their sensitive data protected from misuse.&nbsp;<\/p>\n\n\n\n<p class=\"has-medium-font-size\">Thus, when non-profits are framing their privacy practices, they should take these factors into account.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">This would help them from avoiding getting into risks like data breaches, privacy violations, court actions, and class action litigation. It would also prevent non-profits from getting into reputational and court-ordered damages.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">Non-profits can also avoid getting fined or penalized under the relevant jurisdiction. They can also prevent breaching PIPEDA guidelines accidentally.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Conclusion<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/4-1024x683.jpg\" alt=\"non-profit organizarions\" class=\"wp-image-302\" width=\"768\" height=\"512\" srcset=\"https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/4-1024x683.jpg 1024w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/4-300x200.jpg 300w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/4-768x512.jpg 768w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/4-1536x1024.jpg 1536w, https:\/\/www.humanata.ca\/blog\/wp-content\/uploads\/2022\/12\/4-2048x1365.jpg 2048w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/figure>\n\n\n\n<p class=\"has-medium-font-size\">So, PIPEDA will help non-profit organizations to shape themselves as per client expectations and most importantly court expectations.<\/p>\n\n\n\n<p class=\"has-medium-font-size\">Thus, non-profits must consider incorporating PIPEDA requirements into their privacy policies to uphold their reputation and manage their legal liability effectively.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>How anyone\u2019s private information is handled in today\u2019s time poses a big question for everyone, including non-profit organizations and charitable organizations. Generally, non-profits such as charities, clubs, community groups, and associations find some relief regarding PIPEDA (Personal Information Protection and Electronic Documents Act). However, non-profits that deal with commercial activities are subject to PIPEDA and [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":300,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[34],"tags":[36,18,35],"class_list":["post-298","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-data-protection","tag-data-protection","tag-non-profits","tag-pipeda"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/posts\/298","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/comments?post=298"}],"version-history":[{"count":2,"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/posts\/298\/revisions"}],"predecessor-version":[{"id":305,"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/posts\/298\/revisions\/305"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/media\/300"}],"wp:attachment":[{"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/media?parent=298"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/categories?post=298"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.humanata.ca\/blog\/wp-json\/wp\/v2\/tags?post=298"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}