Analisis Kesesuaian Pengelolaan Data Biometrik Pemohon Paspor dalam Permenimipas Nomor 11 Tahun 2026 dengan Prinsip Pelindungan Data Pribadi
DOI:
https://doi.org/10.55606/jhpis.v5i1.7135Keywords:
Biometric Data, Data Protection Officer, Immigration Services, Legal Certainty, Personal Data ProtectionAbstract
Biometric data of passport applicants, in the form of facial images and fingerprints, is classified as specific Personal Data under Article 4(2) of Law Number 27 of 2022 on Personal Data Protection (PDP Law), thereby demanding a stricter standard of protection. This study examines the conformity of biometric data management under Minister of Immigration and Correctional Affairs Regulation Number 11 of 2026 on Ordinary Passports and Travel Documents in Lieu of Passports (Permenimipas No. 11/2026) with the principles of the PDP Law, employing a normative-juridical method through statutory and conceptual approaches. The findings reveal partial and asymmetrical conformity: the regulation entirely omits provisions on appointing a Personal Data Protection Officer (PPDP), implementation of Data Protection Impact Assessment, data retention periods, technical security standards, and incident notification—a gap rendered more urgent following Constitutional Court Decision Number 151/PUU-XXII/2024 concerning the Judicial Review of Law Number 27 of 2022 concerning Personal Data Protection (Constitutional Court Decision No. 151/PUU-XXII/2024), which broadened the scope of the PPDP appointment obligation. This study recommends harmonizing immigration regulations with the PDP Law to ensure legal certainty for passport applicants as data subjects.
Downloads
References
Asshiddiqie, J. (2010). Perihal undang-undang. Rajawali Pers.
Darmaputra, K. I., & Prabawati, N. P. A. (2025). Optimalisasi layanan M-Paspor sebagai inovasi e-government dalam meningkatkan efektivitas pelayanan keimigrasian di Kantor Imigrasi Kelas I TPI Denpasar. Socius: Jurnal Penelitian Ilmu-Ilmu Sosial, 2(12), 147–155.
Direktorat Jenderal Imigrasi. (2022, 23 Januari). Aplikasi M-Paspor siap digunakan di seluruh Indonesia mulai 27 Januari 2022. Berita Direktorat Jenderal Imigrasi. Diakses 26 Juni 2026, dari https://www.imigrasi.go.id/berita/2022/01/23/aplikasi-m-paspor-siap-digunakan-di-seluruh-indonesia-mulai-27-januari-2022?lang=id-ID
Direktorat Jenderal Imigrasi. (2026, 2 April). Imigrasi di era Yuldi Yusman: Rekor PNBP dan penguatan penegakan hukum [Siaran pers]. Diakses 25 Juni 2026, dari https://www.imigrasi.go.id/siaran_pers/imigrasi-di-era-yuldi-yusman-rekor-pnbp-dan-penguatan-penegakan-hukum
Eastwood, S. C., Shmerko, V. P., Yanushkevich, S. N., Drahansky, M., & Gorodnichy, D. O. (2016). Biometric-enabled authentication machines: A survey of open-set real-world applications. IEEE Transactions on Human-Machine Systems, 46(2), 231–242.
Eckhoff, T. (1975). The notion of basic norm(s) in jurisprudence. Scandinavian Studies in Law, 19, 121–152.
FTC v. Wyndham Worldwide Corp., 799 F.3d 236 (3d Cir. 2015).
Gu, S., Feng, J., Lu, J., & Zhou, J. (2018). Efficient rectification of distorted fingerprints. IEEE Transactions on Information Forensics and Security, 13(1), 156–169.
Jasserand, C. (2016). Legal nature of biometric data: From 'generic' personal data to sensitive data: Which changes does the new data protection framework introduce? European Data Protection Law Review, 2(3), 297–311.
Kementerian Hukum dan Hak Asasi Manusia Republik Indonesia. (2014). Peraturan Menteri Hukum dan Hak Asasi Manusia Nomor 8 Tahun 2014 tentang Paspor Biasa dan Surat Perjalanan Laksana Paspor (Berita Negara Republik Indonesia Tahun 2014 Nomor 649).
Kementerian Imigrasi dan Pemasyarakatan Republik Indonesia. (2026). Peraturan Menteri Imigrasi dan Pemasyarakatan Nomor 11 Tahun 2026 tentang Paspor Biasa dan Surat Perjalanan Laksana Paspor (Berita Negara Republik Indonesia Tahun 2026 Nomor 521).
Kumar, T., Bhushan, S., Sharma, P., & Garg, V. (2025). Examining the vulnerabilities of biometric systems: Privacy and security perspectives. In A. Selwal et al. (Eds.), Leveraging computer vision to biometric applications. CRC Press.
Lubis, A. C. B., & Saraan, M. I. K. (2024). Efektivitas program Mobile Paspor dalam mendorong akuntabilitas pelayanan di Kantor Imigrasi Kelas I Khusus Kota Batam. SAJJANA: Public Administration Review, 2(1), 26–30.
Lutfianingtyas, R. (2025). Data biometrik, taruhan tinggi: Memahami kewajiban hukum dan risiko dalam pengolahan data biometrik. Indonesian Law Digest, Edisi 956.
Lutfianingtyas, R. (2026). Kementerian Imigrasi rombak layanan paspor: Masa berlaku lima tahun diberlakukan bagi pekerja migran dan penerima beasiswa. Indonesian Legal Brief, Edisi 5568.
Machmudi, E. A. A. P. (2025). Navigating the institutional vacuum of personal data protection and public trust in Indonesia. International Journal of Law Dynamics Review, 3(2), 113–123.
Mahkamah Konstitusi Republik Indonesia. (2025). Putusan Mahkamah Konstitusi Nomor 151/PUU-XXII/2024 perihal Pengujian Undang-Undang Nomor 27 Tahun 2022 tentang Pelindungan Data Pribadi.
Mills, J. L., & Harclerode, K. (2017). Privacy, mass intrusion, and the modern data breach. Florida Law Review, 69(3), 771–830.
Neto, N. N., Madnick, S., de Paula, A. M. G., & Borges, N. M. (2020). A case study of the Capital One data breach (Revised) (Working Paper CISL# 2020-16). Sloan School of Management, Massachusetts Institute of Technology.
Razmetaeva, Y. (2017, 27–28 April). Hybrid war, information technologies and the legal vacuum in the digital world [Makalah]. 5th International Conference of PhD Students and Young Researchers: How Deep Is Your Law? Brexit. Technologies. Modern Conflicts, Vilnius, Lithuania.
Republik Indonesia. (1945). Undang-Undang Dasar Negara Republik Indonesia Tahun 1945.
Republik Indonesia. (2011a). Undang-Undang Nomor 12 Tahun 2011 tentang Pembentukan Peraturan Perundang-undangan (Lembaran Negara Republik Indonesia Tahun 2011 Nomor 82, Tambahan Lembaran Negara Republik Indonesia Nomor 5234).
Republik Indonesia. (2011b). Undang-Undang Nomor 6 Tahun 2011 tentang Keimigrasian (Lembaran Negara Republik Indonesia Tahun 2011 Nomor 52, Tambahan Lembaran Negara Republik Indonesia Nomor 5216).
Republik Indonesia. (2013). Peraturan Pemerintah Nomor 31 Tahun 2013 tentang Peraturan Pelaksanaan Undang-Undang Nomor 6 Tahun 2011 tentang Keimigrasian (Lembaran Negara Republik Indonesia Tahun 2013 Nomor 68, Tambahan Lembaran Negara Republik Indonesia Nomor 5409).
Republik Indonesia. (2022). Undang-Undang Nomor 27 Tahun 2022 tentang Pelindungan Data Pribadi (Lembaran Negara Republik Indonesia Tahun 2022 Nomor 196, Tambahan Lembaran Negara Republik Indonesia Nomor 6820).
Republik Indonesia. (2024). Peraturan Presiden Nomor 157 Tahun 2024 tentang Kementerian Imigrasi dan Pemasyarakatan (Lembaran Negara Republik Indonesia Tahun 2024 Nomor 353).
Rodrigues, G. A. P., Serrano, A. L. M., Lemos, A. N. L. E., Canedo, E. D., de Mendonça, F. L. L., de Oliveira Albuquerque, R., Orozco, A. L. S., & Villalba, L. J. G. (2023). Understanding data breach from a global perspective: Incident visualization and data protection law review. Data, 9(27), 1–24.
Salane, D. E. (2011). Are large-scale data breaches inevitable? In T. Saadawi & L. Jordan (Eds.), Cyber infrastructure protection. Strategic Studies Institute, US Army War College.
Sefrianti, T. E., Himamunanto, A. R., & Setyawan, G. C. (2024). Model daktiloskopi digital berbasis metode komposisi PCA-Euclidean-HOG untuk menemukan rumus sidik jari. Jutisi: Jurnal Ilmiah Teknik Informatika dan Sistem Informasi, 13(2), 1669–1677.
Sinaga, E. M. C., & Putri, M. C. (2020). Formulasi legislasi perlindungan data pribadi dalam revolusi industri 4.0. Jurnal Rechts Vinding: Media Pembinaan Hukum Nasional, 9(2), 237–256.
Surya, I., & Wahab, A. (2023). Harmonisasi peraturan perundang-undangan dalam mewujudkan pemerintahan yang baik. Jurnal Kompilasi Hukum, 8(2), 108–117.
Yang, W., Wang, S., Cui, H., Tang, Z., & Li, Y. (2023). A review of homomorphic encryption for privacy-preserving biometrics. Sensors, 23(7), 1–23.
Yeovandi, F., Sabariman, S., & Prasetyo, S. E. (2025). Evaluasi keamanan sistem autentikasi biometrik pada smartphone dan rekomendasi implementasi optimal. JTIM: Jurnal Teknologi Informasi dan Multimedia, 7(1), 133–148.
Yordanov, A. (2017). Nature and ideal steps of the data protection impact assessment under the General Data Protection Regulation. European Data Protection Law Review, 3(4), 486–495.
Downloads
Published
How to Cite
Issue
Section
License
Copyright (c) 2026 Rafael Rocco Hutahaean, Pascalis Danny Kristi Wibowo, Anindito Rizki Wiraputra

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.







