Free template

Privacy compliance checklist

A practical GDPR, CCPA, HIPAA, SOC 2, and vendor-risk checklist for early teams preparing buyer reviews.

  • Data inventory: list systems, vendors, data categories, and retention periods
  • Consent and choices: document cookie, marketing, and opt-out flows
  • DSR readiness: confirm intake, identity checks, response SLAs, and audit trails
  • Policy packet: align public privacy policy, DPA, subprocessors, and security overview
  • Evidence review: attach screenshots, owners, source timestamp, reviewer, and expiry

Use this as a starting point

This page is an educational checklist/template, not legal advice. PrivaBase helps turn the checklist into cited evidence, reusable answers, and a buyer-ready packet.