One of the measures is a change to GDPR requirements, for organisations with fewer than 750 employees (they will no longer need to create or update their existing records of activities involving the processing of personal data in cases where these activities are not likely to result in a high risk to the rights and freedoms of data subjects).