The Irish Data Protection Commission (DPC) has opened an investigation into online retailer Shein. The probe focuses on how Shein transfers personal data of customers located in the EU and EEA to China. Under the EU General Data Protection Regulation (GDPR), transfers of personal data outside the EU and EEA are subject to specific legal requirements and safeguards. The DPC says the inquiry will examine whether Shein Ireland complies with GDPR obligations when moving EU/EEA customer information to countries outside the European region. The regulator’s investigation is intended to assess Shein’s data-transfer practices and related compliance measures, including whether the company’s approach meets GDPR standards for cross-border data handling. The outlets agree that the investigation is initiated by the DPC and that it concerns Shein’s treatment of EU/EEA personal data when that data is transferred to China.