How the pieces connect
- 1Customer
Wants a better product or insight using their own data.
- 2Data Recipient
An accredited party requests specific data for a stated purpose.
- 3Consent
Customer chooses data clusters, purpose and duration.
- 4Authorisation
Customer authenticates with their data holder and confirms sharing.
- 5Data Holder APIs
Standardised APIs return the authorised data.
- 6Ongoing management
Customer can review or withdraw consent at any time.
Questions worth asking
Do I understand what I'm sharing, and why?
Which use cases genuinely create value from shared data?
Which data clusters move, and how is quality assured?
Who is accredited, who holds data, who governs the standards?
- Government guidance · Australian GovernmentConsumer Data RightTopic: CDR overview for consumers and businesses · Last reviewed 2026-10-07
- Public standard · Data Standards BodyConsumer Data StandardsTopic: Technical and consumer experience standards · Last reviewed 2026-10-07
- Regulator · ACCCConsumer Data RightTopic: Accreditation and rules · Last reviewed 2026-10-07
- Regulator · OAICConsumer Data Right privacyTopic: Privacy safeguards · Last reviewed 2026-10-07
Explore the available interactive journey and this educational overview. Both use general industry concepts and simulated examples; further experiences are in development.