Demo mode·Viewing as Consumer
Compliance

ASEAN regional governance

Compliance matrix for all 10 ASEAN member states. Admins edit country records; reviewers add comments and status.

CountryRegulatorLawHealth dataCross-borderRetentionOwnerReviewedNextRiskStatus
Singapore (SG)PDPCPDPA 2012 (amended 2020)highTransfer Limitation ObligationRx: 5y, orders: 7yR. Ng2025-11-102026-05-10lowCompleted
Malaysia (MY)JPDPPDPA 2010 (2024 amendments)highTransfer whitelist requiredRx: 7y, orders: 7yR. Ng2025-11-052026-02-05mediumIn Review
Indonesia (ID)Kominfo / PDP AgencyPDP Law 2022highAdequacy-basedRx: 5y minimumS. Wijaya2025-10-222026-01-22highAction Required
Thailand (TH)PDPC-THPDPA 2019highConsent + adequacyRx: 5yN. Pruk2025-09-302026-03-30mediumIn Review
Vietnam (VN)A05 / MPSPDPD 2023 (Decree 13)highImpact assessment requiredRx: 5yL. Trang2025-10-112026-01-11highAction Required
Philippines (PH)NPCData Privacy Act 2012highContractual safeguardsRx: 5yJ. Cruz2025-11-012026-05-01mediumIn Review
Brunei (BN)AITIPDPO (in force 2025)mediumConsent-basedRx: 5yUnassigned2025-08-142026-02-14mediumNot Started
Cambodia (KH)MPTCDraft Cybersecurity/PDPmediumNo formal regimeRx: 5y (proposed)Unassigned2025-07-202026-01-20highAction Required
Laos (LA)MPTLaw on Electronic Data Protection 2017mediumConsent-basedRx: 5yUnassigned2025-06-052026-01-05highNot Started
Myanmar (MM)MoTCCybersecurity Law (2025 draft)mediumRestrictiveRx: 5y (proposed)Unassigned2025-05-182026-02-18highAction Required