Think of this like a health check for your company's data protection practices. You'll answer a series of yes/no questions grouped by topic (like 'Consent' or 'Data Security'). Your answers help the tool calculate a score and show you what needs attention — no legal degree required.
PDPL Self-Assessments
Lawful Basis for Processing
Questions about your lawful bases for processing personal data under PDPL Art. 4-6.
3 questionsConsent Management
Questions about obtaining, recording, and managing consent (Art. 5).
4 questionsData Subject Rights
Questions about handling DSARs, correction, deletion, portability (Art. 16-21).
6 questionsController Obligations
Questions about accountability, data protection by design, privacy notices (Art. 7-8, 14).
5 questionsData Protection & Security
Questions about technical and organisational security measures (Art. 10, 13, 22).
5 questionsData Breach Notification
Questions about breach detection, 72-hour notification, and subject notification (Art. 9).
4 questionsCross-Border Data Transfer
Questions about international data transfers and safeguards (Art. 23-24).
2 questionsData Protection Officer
Questions about DPO appointment, independence, and resources (Art. 11).
3 questionsRecords of Processing (ROPA)
Questions about maintaining Records of Processing Activities (Art. 12).
3 questionsData Protection Impact Assessment
Questions about DPIAs for high-risk processing (Art. 26).
2 questionsChildren's Data Protection
Questions about special protections for children data (Art. 17 Children).
2 questionsProcessor Obligations
Questions about data processor management and DPAs (Art. 9 Processor).
3 questions