01
Describe your business and data flows
Enter what your company does, who your customers are, and how you collect and use personal data. Add the regions you serve, whether you handle special-category data, and the third-party processors you rely on — Stripe, AWS, HubSpot, and the like. The more specific you are, the sharper the pack.
02
Generate your audit-readiness pack
The tool maps your inputs against the GDPR and drafts a Record of Processing Activities, an Article 35 DPIA screen, a data subject request workflow, a privacy policy, and a prioritized gap list. Each lawful basis is tied to an Article 6 reference rather than a vague label.
03
Review, fix the gaps, and have counsel sign off
Work through the gap list highest priority first, download the privacy policy draft, and slot the RoPA into your records. Treat the output as a structured first draft — have a DPO or privacy lawyer review it before you rely on it for an actual audit.