The backbone of any privacy program is data mapping and building an inventory of assets processing personal data. If done right, data mapping helps companies to get complete visibility into the data lifecycle and help them achieve compliance with laws and protect customer data.
Here are some of the use cases of data mapping:
Creating a privacy policy with accurate details about personal data collection & processing
Creating GDPR reports like RoPA reports
Maintain a list of all data stores and third parties to honor Data Subject Access & Deletion Requests as per GDPR, CPRA
Spot excessive data sharing or non-compliance with privacy laws
Automating Data Mapping with Privado
Privado is a privacy code scanning solution that connects with source code management tools like GitHub, Bitbucket, GitLab and scans all your code repositories to automate data mapping for all products and applications built by your developers. For each code repository, Privado discovers the following:
Repository Risk: Privacy risk of the repository
Data Elements: Details of personal data that your repository is processing
Sensitive Data: Details of sensitive data that your repository is processing
Third Parties: All third parties where personal data gets shared
Databases: All data stores where personal data gets stored
APIs: Internal APIs where data is shared
Beyond this Privado, offers developer-friendly assessments to create GDPR RoPA, DPIAs, PIAs, TIAs, etc.
Data Inventory
Privado identifies all the data related assets in your code repositories. Navigate to your dashboard and click on the Data Inventory tab on the top-menu to see:
Data Elements: List of all data elements that your company processes
Third Parties: List of all third parties discovered by Privado
APIs: List of all internal APIs discovered by Privado