What problem does it solve?
It turns a new product or processing activity into a structured Privacy Impact Assessment (PIA) that the privacy team and stakeholders can review, reducing uncertainty and speeding sign-off while ensuring the analysis checks whether a PIA is actually needed.
Core Features & Use Cases
- PIA suitability check across regimes: Verifies whether mandatory or strongly indicated privacy assessment triggers apply, with primary-source citations and currency checks.
- Guided intake from the product team: Collects the specific feature description, data categories, purposes, data flows, storage regions, access controls, retention, and third-party involvement.
- House-format PIA output with guardrails: Produces an in-house structured PIA including lawful-basis analysis, privacy policy consistency diffing, quantified risks with mitigations and owners, and a conditions-based routing for sign-off.
Quick Start
Run /privacy-legal:pia-generation and tell it which feature or processing activity you want assessed, such as Location sharing feature.