Skip to main content
Maoni Hub
  • English
BetaPilot service, still being improved.

All consultationsAbout & FAQsPrivacy policyPublic audit log

  1. Home›
  2. The Data Protection (Biometric Consent) Bill, 2026›
  3. Submit a memorandum

Submit a memorandum

On behalf of your group or organisation, for “The Data Protection (Biometric Consent) Bill, 2026”. Your progress saves in this browser tab as you type. Submissions close on 30 October 2026.

1About your organisation

Required

For example health, education, transport.

Roughly how many people your organisation speaks for as a whole.

Which best describes your organisation?

2Who you represent

Required

This helps the committee understand whose views your memorandum carries. It is shown as declared by your organisation.

Which sexes do you represent?

Age groups your organisation represents

Counties your organisation represents

Tick National if you work across the country.

Do you represent communities in towns or cities, or in rural areas?

Is your organisation focused on persons with disabilities?

3Cover statement

Required

Briefly tell the committee who you represent and why you are submitting. 200–500 words is typical.

4Your views on each question

Answer the same questions citizens are asked, on behalf of the people you consulted. Answer as many as you can — leave a question fully blank to skip it, unless it is marked Required.

Question 1 of 2 · Clause 5

Consent for biometric dataDo you support requiring fresh written consent before any agency collects biometric data such as fingerprints, face or iris scans?

Before an agency can take your fingerprints, face or iris scan, it must first get your clear written permission for that specific purpose.

Show the original text (clause 5)
A data controller or data processor shall not collect biometric data, including fingerprints, facial images or iris scans, unless the data subject has given fresh, specific and informed written consent for that collection.

Don't include your name, phone number, or anything else that could identify you.

Question 2 of 2 · Clause 11

72-hour breach notificationDo you support requiring organisations to notify affected people within 72 hours of a data breach?

If an organisation suffers a data breach, it must tell the people affected and the regulator within 72 hours.

Show the original text (clause 11)
A data controller shall, within seventy-two hours of becoming aware of a personal data breach, notify each affected data subject and the Data Commissioner of the nature and likely consequences of the breach.

Don't include your name, phone number, or anything else that could identify you.

5Your consultation process

Optional

Tell the committee how you gathered input for this memorandum. Add one row per consultation event you held. Leave blank if your memorandum is based on desk research only.

Event 1

Describe the people you consulted — for example gender mix, age groups, communities reached, accessibility provisions, counties covered.

Methods, languages used, anything that helps the committee read your memorandum in context.

6Supporting documents

Optional

Upload files that support your submission. Documents are stored for committee reference and are not published. Check your documents don’t contain other people’s personal data — names, contact details or stories that identify someone.

PDF, Word, JPG or PNG · up to 10 MB per file · up to 5 files. Files upload when you submit. Attached files aren’t saved in drafts — re-attach if you come back later.