01
Programme Framework
GDPR · CCPA · state-by-state · GLBA · sector overlays
02
Data Inventory
9-field structure · category · purpose · lawful basis · location · transfer
03
DPIA Template
Necessity · risks · mitigations · DPO sign-off · re-assessment trigger
04
Consent Management
Granularity · affirmative action · withdrawal · records · re-consent
05
DSAR Workflow
Access · deletion · portability · rectification · opt-out · profiling objection
06
Risk Score Calculator
Live JS · 6 dimensions · DPIA threshold output
07
Retention Schedule
Per-category · lawful basis · backup overlay · destruction method
08
Breach Response
72-hour DPA clock · 30-day customer · state AG variations
09
Cross-Border Transfer
Adequacy · SCCs · BCRs · TIA · derogations
10
Vendor Privacy DD
DPA · sub-processors · certifications · breach SLA · audit rights
11
Privacy Notice
10-section template · multi-regime compatible
12
Annual Review
Metrics · landscape · DPIAs · audit · resourcing
13
Committee Charter
Membership · cadence · agenda · decision authority