Skip to Content

DPDP Act 2023
Self-Assessment

Evaluate your organisation's compliance readiness under India's Digital Personal Data Protection Act 2023. Free, instant, confidential.


Step 1 of 3

Section A — Consent Management

Q1. Does your organisation obtain free, specific, informed, and unambiguous consent before processing personal data?

Q2. Can individuals withdraw consent easily, and does withdrawal stop data processing promptly?

Section B — Data Fiduciary Obligations

Q3. Does your organisation publish a clear and accessible Privacy Notice explaining the purpose of data collection?

Q4. Do you collect only the minimum personal data necessary for the stated purpose (data minimisation)?

Section C — Data Principal Rights

Q5. Can individuals access, correct, or erase their personal data upon request within a reasonable timeframe?

Q6. Do you have a Data Grievance Redressal Officer appointed and is their contact information published?

Section D — Data Breach Management

Q7. Do you have a documented Data Breach Response Plan and can you notify affected individuals and authorities promptly?

Q8. Are access controls and security measures in place to protect personal data from unauthorised access?

Section E — Children's Data

Q9. If you process data of children (under 18), do you obtain verifiable parental consent?

Section F — Cross-Border Data Transfer

Q10. If you transfer personal data outside India, is it only to countries approved by the Central Government?

Q11. Do you maintain a Register of third-party Data Processors and do you have Data Processing Agreements (DPAs) with them?

Section G — Staff Awareness

Q12. Are employees trained on DPDP Act 2023 obligations and data handling best practices?


Get Your Results

Enter your details to receive your personalised DPDP compliance report.

Your DPDP Compliance Score

Speak with a DPDP Expert →
Bot Avatar

LLMbot

Online