Maintaining customer profiles, purchase history, preferences, and communication records for service delivery.

Data Details
Data Subjects
CustomersProspects
Data Volume
50,000 - 100,000 records
Data Categories
Full NameMobile NumberEmail AddressPurchase HistoryPreferencesCustomer ID
Processing Type
Collection
Automated Decision-Making
No
Legal Basis
Legal Basis
Legitimate Interest
Consent Mechanism
Registration Form & Privacy Notice
Purpose
Managing customer relationships, improving service quality, and enabling personalized communications.
Legal Basis Detail
Legitimate business interest in maintaining customer records for service delivery and relationship management.
Recipients & Transfers
Cross-Border
Internal Recipients
SalesCustomer ServiceMarketing
External Recipients
Salesforce CRM (US)
Transfer Countries
US
Transfer Safeguards
Standard Contractual Clauses (SCCs) with Salesforce Inc.
Retention & Security
Retention Period
5 years after last customer interaction
Retention Justification
Security Measures
✓ TLS Encryption in Transit✓ Access Controls✓ Regular Security Audits✓ Data Masking
PDPL Compliance Assessment
Update →
D1 Data Subject Rights & Consent
72%
Partial

Most requirements for Data Subject Rights & Consent are addressed. Some gaps identified in documentation or process.

D2 Processing Principles & Lawful Basis
65%
Partial

Most requirements for Processing Principles & Lawful Basis are addressed. Some gaps identified in documentation or proce…

D3 Data Protection & Security
78%
Partial

Most requirements for Data Protection & Security are addressed. Some gaps identified in documentation or process.

D4 Organizational Requirements & Governance
70%
Partial

Most requirements for Organizational Requirements & Governance are addressed. Some gaps identified in documentation or p…

D5 Cross-Border Data Transfer
55%
Non-Compliant

Significant gaps identified in Cross-Border Data Transfer. Immediate remediation required.

D6 Compliance & Accountability
68%
Partial

Most requirements for Compliance & Accountability are addressed. Some gaps identified in documentation or process.

Associated Risks
1
High Inadequate consent records for CRM data collection… Open
Edit Activity Add Risk