Files
birthday_messaging/wiki/gdpr-audit.md
2026-02-25 13:16:49 +09:30

55 lines
984 B
Markdown

# \# GDPR Adequacy Checklist
#
# \## Governance \& Breach Protocols
# \- DPO appointed and documented
# \- 72-hour breach notification process defined
#
# \## Consent \& Data Collection
# \- No pre-ticked marketing consent boxes
# \- Explicit consent required for birthday listings
#
# \## Sensitive Data Handling
# \- Medical data restricted to "unwell" status
# \- Dietary data shared only with explicit consent
#
# \## International Data Transfers
# \- Photo/video sharing audited for adequacy mechanisms
#
## Data Protection Officer (DPO)
Name: [Your Name Here]
Role: [Your Role Here]
Contact: [email@example.com]
Date Appointed: [YYYY-MM-DD]
## Data Protection Officer (DPO)
Name:
Role:
Contact:
Date Appointed:
## Regulatory Feature Specifications
### Right of Access (Article 15)
Users can request a downloadable summary of stored personal data.
### Right of Erasure (Article 17)
Users can trigger full deletion across all systems and subprocessors.