Browse Definitions :
Definition

Electronic Commerce (EC Directive) Regulations 2002

The Electronic Commerce (EC Directive) Regulations 2002 establishes legal rules that online retailers and service providers must comply with when dealing with consumers in the 27 member countries of the European Union (EU). The directive dictates the information that consumers must be provided with in online transactions. If a retailer/service provider fails to provide information required by the directive, its contract with the consumer may be invalid and it may be in breach of member state retail law.

Services covered by the directive include paid-for and free online information services provision, and online selling of products and services such as advertising, professional services, entertainment, and Internet and telephony service provision.

Retailers/service providers must provide the following information to consumers when conducting business via electronic means:

  • The technical steps involved in placing an order.
  • The terms and conditions under which a contract is made. This information must be available to the consumer in a way that can be reproduced and stored.
  • Prices must be clear and state whether tax or shipping costs are included.
  • The name of the service provider, its email address (a contact form is not sufficient) and a geographic address.
  • Acknowledgement of the order by electronic means and information on how to amend input errors made during the order process.
  • If it is a company, the company's registration number and place of registration.
  • Membership details, including registration number of any trade or professional association of which the service provider is a member.

Any breach of these requirements is considered a breach of statutory duty. If the consumer is not informed of how they can amend errors in an order, the contract can be voided.

EU law dictates that electronic transactions are subject to the Internal Market clause, which dictates that 'information society services' are subject to the law of the member state and that a member state cannot restrict incoming services.

The directive also applies to services provided by SMS text messaging. Given the 160 character limit of SMS, the body of the message must contain a URL where the required information can be found.

This was last updated in August 2010

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.

-ADS BY GOOGLE

File Extensions and File Formats

SearchCompliance

  • risk management

    Risk management is the process of identifying, assessing and controlling threats to an organization's capital and earnings.

  • compliance as a service (CaaS)

    Compliance as a Service (CaaS) is a cloud service service level agreement (SLA) that specified how a managed service provider (...

  • data protection impact assessment (DPIA)

    A data protection impact assessment (DPIA) is a process designed to help organizations determine how data processing systems, ...

SearchSecurity

  • Web application firewall (WAF)

    A web application firewall (WAF) is a firewall that monitors, filters and blocks data packets as they travel to and from a ...

  • spyware

    Spyware is a type of malicious software -- or malware -- that is installed on a computing device without the end user's knowledge.

  • application whitelisting

    Application whitelisting is the practice of specifying an index of approved software applications or executable files that are ...

SearchHealthIT

SearchDisasterRecovery

  • business continuity plan (BCP)

    A business continuity plan (BCP) is a document that consists of the critical information an organization needs to continue ...

  • disaster recovery team

    A disaster recovery team is a group of individuals focused on planning, implementing, maintaining, auditing and testing an ...

  • cloud insurance

    Cloud insurance is any type of financial or data protection obtained by a cloud service provider. 

SearchStorage

  • DRAM (dynamic random access memory)

    Dynamic random access memory (DRAM) is a type of semiconductor memory that is typically used for the data or program code needed ...

  • RAID 10 (RAID 1+0)

    RAID 10, also known as RAID 1+0, is a RAID configuration that combines disk mirroring and disk striping to protect data.

  • PCIe SSD (PCIe solid-state drive)

    A PCIe SSD (PCIe solid-state drive) is a high-speed expansion card that attaches a computer to its peripherals.

Close