GDPR Readiness Assessment
EU General Data Protection Regulation
Assess your GDPR position across lawful basis, data subject rights, 72-hour breach notification, DPIAs, international transfers, and processor management — the areas supervisory authorities actually test.
- 16 GDPR compliance domains
- Weighted scoring — critical gaps count three times an operational one
- Instant result, scored in your browser — nothing is sent until you ask for the full report
- Roughly five minutes to complete
This is an indicative self-assessment, not a formal audit or legal advice. For a certification-grade gap analysis, talk to our team.
What the Assessment Covers
The 16 questions are grouped into three weighted tiers.
Tier 1 — Critical
Governance and accountability — weighted 3×
- Lawful Basis & Consent
- Data Subject Rights
- Breach Notification
- Accountability & Governance
Tier 2 — High Impact
Core operational controls — weighted 2×
- Records of Processing
- DPIA & Privacy by Design
- International Transfers
- Processor Management
- Security of Processing
- Transparency & Privacy Notices
Tier 3 — Operational
Supporting practices — weighted 1×
- Data Inventory & Flow Mapping
- Retention & Minimisation
- Cookies & Tracking Consent
- Vendor & Sub-Processor Register
- Training & Awareness
- Supervisory Authority & Representation
Other Assessment Tools
ISO 27001
Information security management system readiness.
ISO 42001
AI management system readiness for responsible AI adoption.
DPDPA
India's Digital Personal Data Protection Act readiness.
SOC 2
Trust Services Criteria readiness for your Type I or Type II report.
NIST CSF 2.0
Framework-neutral cyber posture check across all six CSF functions.
Ready to Close Your GDPR Gaps?
Our consultants take organisations from first gap assessment through to certification and ongoing maintenance.
Talk to a Compliance Expert