Tools

DPDP Compliance Readiness Scorer

10-question self-assessment against the Digital Personal Data Protection Act 2023. Answer Yes / Partial / No for each. Your detailed gap report is delivered via email.

0 / 10 answered0/100
Q1 · Data Inventory

Has your organisation mapped all personal data it collects, processes, stores, and shares?

Q2 · Legal Basis

Do you have a documented lawful basis for each personal data processing activity?

Q3 · Consent Withdrawal

Can your customers withdraw their consent easily and quickly — within the same number of steps as giving it?

Q4 · Processor Contracts

Do you have a written contract with every vendor or partner who processes personal data on your behalf?

Q5 · Data Principal Rights — Access

Can you fulfil a Data Principal's request to access their own data within 30 days?

Q6 · Right to Erasure vs Statutory Retention

Can you delete a customer's personal data on request while retaining what is legally required by RBI/SEBI/IRDAI?

Q7 · Breach Notification

Do you have a data breach notification process that can reach the Data Protection Board within 72 hours?

Q8 · Children's Data

If you process children's data (minor account holders), do you obtain verifiable parental consent?

Q9 · Transparency

Do you have a DPDP-compliant privacy notice in plain language (not just legalese) accessible on your website?

Q10 · SDF Readiness

Have you assessed whether your organisation is likely to be designated a Significant Data Fiduciary and prepared for the additional obligations?

Made with Emergent