Authorisation To Disclose Information Template for England and Wales

Generate a bespoke document

Trusted by 200k+ teams

4.7 Capterra
4.8 Product Hunt
4.6 Trustpilot

What is a Authorisation To Disclose Information?

The Authorisation To Disclose Information is essential in situations where confidential or personal information needs to be shared between parties while maintaining legal compliance and protecting privacy rights. This document type is particularly relevant under English and Welsh law, where strict data protection regulations govern information sharing. It provides a formal framework for authorized disclosure, specifying what information can be shared, with whom, and for what purpose. The authorization helps organizations comply with UK GDPR, the Data Protection Act 2018, and other relevant legislation while managing risk and maintaining proper documentation of consent.

Reviewed by

Swetha Meenal

Legal Engineer, GenieAI

Swetha Meenal profile photo

A lawyer, legal researcher and legal tech founder, Swetha has built AI products deployed inside Tier 1 firms and enterprises. She ensures GenieAI's alignment with the latest regulation and executes testing on the legal robustness of Genie output.

Reviewed by

Imad Mohammed Nazar

Legal Engineer, GenieAI

Imad Mohammed Nazar profile photo

A Skadden-trained M&A lawyer, Imad advised on cross-border transactions and contractual risk before moving into legal AI. He reviews GenieAI's output for compliance and enforceability across our 150+ supported jurisdictions, as well as facilitating external benchmarking.

Jurisdiction

England and Wales

Publisher

GenieAI

Sector

Business

Cost

Free to use

Last updated

About the Authorisation To Disclose Information

When you need to share confidential or personal information in England and Wales, an Authorisation To Disclose Information provides the legal framework to do so safely and compliantly. This document establishes formal consent for data sharing while protecting all parties' rights and ensuring compliance with strict UK data protection laws. You'll use this authorization to create a clear record of what information can be disclosed, to whom, and for what specific purposes.

When do you need this document?

You'll need this authorization when sharing personal data between organizations, such as when an employee moves between companies and their HR records need transferring. Healthcare providers use these authorizations when sharing patient information with specialists or insurers. Legal professionals require them when disclosing client information to third parties like expert witnesses or other advisors. Financial institutions use these documents when sharing customer data with credit agencies or regulatory bodies. Educational institutions need them when providing student records to potential employers or other schools.

Key legal considerations

The scope of authorization must be clearly defined to specify exactly what information can be disclosed. You must establish a legitimate lawful basis under UK GDPR, whether through explicit consent, legitimate interest, or another applicable ground. The document should include duration limits to prevent indefinite data sharing and specify the permitted purposes for using the disclosed information. Consider including restrictions on further disclosure to third parties and requirements for data security measures. Special category data, such as health records or criminal convictions, requires enhanced protection and explicit consent provisions. You should also address data subject rights, including the ability to withdraw consent and request copies of shared information.

Legal requirements in England and Wales

Under UK GDPR and the Data Protection Act 2018, you must ensure any authorization meets specific consent requirements, including being freely given, specific, informed, and unambiguous. The document must clearly identify the data controller and any processors involved in handling the information. You need to provide transparency information about how the data will be processed, stored, and potentially shared further. Common law confidentiality duties may apply alongside statutory requirements, particularly in professional relationships like doctor-patient or solicitor-client contexts. The Freedom of Information Act 2000 may affect public bodies' obligations when disclosing information to individuals. For health records, the Access to Health Records Act 1990 provides additional framework requirements. Ensure your authorization includes provisions for data retention limits and secure disposal methods when the authorization expires.

GOVERNING LAW

Applicable law

This Authorisation To Disclose Information is drafted to comply with England and Wales law. Key legislation includes:

Genie's Security Promise

Genie is the safest place to draft. Here's how we prioritise your privacy and security.

Your data is private:

We do not train on your data; Genie's AI improves independently

All data stored on Genie is private to your organisation

Your documents are protected:

Your documents are protected by ultra-secure 256-bit encryption

We are ISO27001 certified, so your data is secure

Organizational security:

You retain IP ownership of your documents and their information

You have full control over your data and who gets to see it