The invention provides a GDPR compliance supervision method and
system based on an alliance chain, and the method comprises the steps: enabling a
service provider and a supervision mechanism to carryout the real-name registration in the alliance chain, enabling the
service provider to be registered as a service node, and carrying out the accounting node election and block generation according tothe credibility of the service node; the permission
record of the
data subject is encrypted and stored in the alliance block chain through the
smart contract; the
data subject is granted permission toaccess the alliance block chain, and when the data controller transmits personal information to the data processor, the agreement of the related
data subject is needed, and the transaction also stores a data flow
record through the
smart contract; and during compliance investigation, submitting a
traceability request to the alliance block chain by the supervision institution, and tracing to obtain a
record by the alliance block chain service network according to the request. According to the method, the expansibility and the
tamper resistance of the block chain are utilized so that the privacy right endowed by the user to drive the GDPR and the efficiency of a
service provider to abide by the GDPR compliance can be effectively improved from the aspect of
technical support, and the compliance and supervision cost is reduced.