Javascript is required
logo-dastralogo-dastra

Modelo de auditoríaData processing creation questionnaire

Privacy hub

1. General

1.1. Name of the data processing
1.2. Type of processing
1.3. Data processing description
1.4. Data processing state
1.5. Deployment date

2. Stakeholders

2.1. Add new stakeholder

3. Purposes

3.1. List the purposes of this data processing

4. Assets

4.1. Add an asset

This section lists the assets, both internal and external to the organisation (applications, resources, buildings, etc.), which support the execution of the data processing concerned.

5. Datasets

5.1. Data fields

Make sure you collect only the data that is strictly necessary for processing.

5.2. Origin of the collection
5.3. Description of the origin of the collection
5.4. Describe the retention period for data in the active database

The active base is the default data processing base.

5.5. Describe the retention period for data in interim storage

Intermediate archiving is a more restricted form of storage.

5.6. Describe the rule applied for the final fate of the data

The final fate of data allows you to describe the conditions for deleting data or transferring it for permanent archiving.

6. Data subject

6.1. Enter the categories of data subject

Indicate the categories of data subject concerned by this data processing

7. Subject's rights

7.1. How do you inform people about the processing?

Describe the procedures available to data subjects for exercising their right to information

7.2. How do you keep people informed?

e.g. information leaflet on the form, e-mail notification, etc.

7.3. How can people delete their data?

Detail the procedures available to data subjects for exercising their right to erasure (right to be forgotten).

7.4. Explain how people can delete their data?

e.g.: Account deletion button in the configuration interface, request via a form, etc.

7.5. How do people access their data?

Give details of how data subjects can access their data

7.6. Explain how people can access their data?

e.g. download button in the user interface, user profile page, request via form or e-mail...

8. Recipients

8.1. Enter the list of recipients

9. Measures

9.1. Select the security measures implemented

10. Impact analysis

10.1. Evaluation or scoring including profiling and prediction activities
10.2. Automated decision making with significant effects
10.3. Systematic monitoring
10.4. Sensitive personal data
10.5. Data processed on a large scale
10.6. Combining, linking or cross-referencing
10.7. Data concerning vulnerable data subjects
10.8. Innovation and technology
10.9. Rights and contractual obligations

11. Attachments

11.1. Document your processing
11.2. Upload your files here

Upload your files here

12. Controllers

12.1. Add a data controller
Creado el:00/06/2026

Actualizado el :00/06/2026

Licencia : © Creative commons :
Attribution / Pas d'utilisation commerciale
CC-BY-NC AttributionPas d'utilisation commerciale

Autor :
Antoine Bidault
Antoine Bidault

Número de usos :4


Acceda a todos nuestros modelos de auditoría

Pruebe Dastra ahora mismo para acceder a la totalidad de nuestros modelos de auditoría que podrá adaptar a su organización. Es gratuito y sin compromiso durante los primeros 30 días (no se requiere tarjeta de crédito).

Utilizar este modelo de auditoría
Suscríbase a nuestro boletín

Le enviaremos algunos correos electrónicos para mantenerlo informado sobre nuestras novedades y las actualizaciones de nuestra solución.

* Siempre podrá darse de baja en cada boletín.