Consent

Under GDPR, consent must be freely given, specific, informed, and unambiguous. Financial institutions must record when, how, and what individuals were told, and support ongoing withdrawal of consent. Recording consent events helps demonstrate legal compliance across banking and investment products.