Do you actually need a record? We answer honestly before selling it to you.
The record lists, for each data processing activity you carry out, its purpose, the categories of data and individuals concerned, the recipients, retention periods and security measures.
Article 30 of the GDPR. The record is mandatory for any organisation employing more than 250 people, and for smaller ones as soon as the processing carries a risk, is not occasional, or involves sensitive data.
The record is the first document requested during a CNIL audit. Its absence is flagged immediately, even for a small organisation.
Before selling you this service, we honestly check whether you are actually affected.
Thirty minutes, no commitment, for an honest diagnosis.