What is a Consent Manager?
A Consent Manager is a Data Protection Board–registered intermediary that lets you give, manage, review, and withdraw your consent across different services from one place. It’s meant to be a single, transparent dashboard for all the consents you’ve given.
Educational resource only — not legal advice.
Under India’s Digital Personal Data Protection Act, 2023 (DPDP Act), and its Rules, a Consent Manager must be a company incorporated in India, meet a minimum net worth of ₹2 crore, and register with the Data Protection Board, which oversees and publishes the list of approved managers. The registration framework comes into force on 13 November 2026, so registered Consent Managers do not exist yet — this is a part of the system the law is building toward.
Why it matters to you. For individuals, a Consent Manager is where you’ll eventually be able to see and control every consent you’ve given, in one interoperable place rather than service by service. For businesses, it’s part of the consent infrastructure the DPDP framework envisions.
What it is not. A Consent Manager does not, on its own, make a business “DPDP compliant” — the fiduciary’s own duties still apply. It is also not the Data Protection Board (the regulator), and it’s distinct from an Account Aggregator (the consent intermediary used specifically for financial data).
Collecting personal data from your own customers?
These are the rights your business has to honour. See where you stand with a two-minute self-check — no sign-up, no data stored.
Run the compliance self-check →