China: National Information Security Standardisation Technical Committee adopted guidelines on data security requirements for academic and scientific service platforms including data localisation requirements

Description

National Information Security Standardisation Technical Committee adopted guidelines on data security requirements for academic and scientific service platforms including data localisation requirements

On 16 September 2025, the National Information Security Standardisation Technical Committee (TC260) released the cybersecurity standard practice guidelines – data security requirements for academic and scientific service platforms. The guidelines require public and non-public academic and scientific data to be stored separately, and non-public data collected or generated within the territory of the People’s Republic of China to be stored domestically. Storage of such data must use access controls and encryption, and deletion policies must ensure secure erasure and physical destruction of media containing non-public data and personal information.

Original source

Scope

Policy Area
Data governance
Policy Instrument
Data localisation requirement
Regulated Economic Activity
search service provider, platform intermediary: other
Implementation Level
national
Government Branch
executive
Government Body
other regulatory body

Complete timeline of this policy change

Hide details
2024-09-30
in consultation

On 30 September 2024, the Secretariat of the National Cybersecurity Standardization Technical Commi…

2024-10-14
processing consultation

On 14 October 2024, the Secretariat of the National Cybersecurity Standardization Technical Committ…

2025-09-16
adopted

On 16 September 2025, the National Information Security Standardisation Technical Committee (TC260)…