Guided journey
Clinic, hospital or health app
Patient data is sensitive data, the breach clock is 24 hours, and a DPIA is mandatory. Let's make sure patient data cannot sink you.
19 steps about 208 minutes in totalFree · no account needed to run a step
- 1
- 2
- 3
- 4
- 5
Privacy maturity scorecard
required· ~9 min
Opens after: Data Protection Needs Assessment
Run this on its own - 6
What data do you hold? (RoPA starter)
required· ~5 min
Opens after: Data Protection Needs Assessment
Run this on its own - 7
- 8
Lawful basis finder
required· ~12 min
Opens after: What data do you hold? (RoPA starter)
Run this on its own - 9
- 10
Privacy Notice Grader
required· ~19 min
Opens after: What data do you hold? (RoPA starter)
Run this on its own - 11
- 12
Could you handle a data request?
required· ~10 min
Opens after: What data do you hold? (RoPA starter)
Run this on its own - 13
- 14
- 15
Do I need a DPIA?
required· ~11 min
Opens after: What data do you hold? (RoPA starter)
Run this on its own - 16
Vendor and DPA checker
required· ~6 min
Opens after: What data do you hold? (RoPA starter)
Run this on its own - 17
- 18
App Builder — Privacy & Security Checklist
required· ~22 min
Opens after: Data Protection Needs Assessment
Run this on its own - 19
Save your progress
Every step is free to run right now. Start the pathway to keep the journey in one place — anything you’ve already completed is carried forward, so nothing is asked twice. No account needed: an org code works.