Do you know what personal data you hold, why, where it goes, and who can prove it?
Thirteen questions across the eight privacy domains regulators and enterprise buyers test, mapped to the NIST Privacy Framework. You get the gaps, the evidence that would close them, and the full assessment to take next.
Ready to see where you stand?
You'll get a computed readiness indicator across Governance, Data inventory, Data lifecycle, Data subject rights, Third parties and processors, International transfers, Privacy incidents, Privacy by design, the evidence that would answer each gap, and the full assessment to take next. Any critical gap is called out on its own, even when the overall score looks strong.
Assessment methodology: aligned to the NIST Privacy Framework 1.0 with crosswalks to GDPR and U.S. state privacy law themes. It reports a readiness indicator based on your answers; it does not determine which privacy laws apply to you or that you comply with any of them. Confirm applicability with qualified privacy counsel.
See your full results
Enter your email to unlock your readiness indicator, domain scores, top gaps, the evidence that would close them and recommended next steps.
- Overall readiness indicator and tier
- 8 domain scores with the NIST Privacy Framework 1.0 mapping
- Your highest-priority gaps, critical ones flagged
- The evidence that would answer each gap
- Recommended next steps and an email copy
Your Privacy Readiness Readiness Indicator
Executive summary
Domain scores
Weighted: Governance 15% · Data inventory 20% · Data lifecycle 15% · Data subject rights 15% · Third parties and processors 10% · International transfers 5% · Privacy incidents 15% · Privacy by design 5%. Expand a domain to see the contributing questions, your answers and the NIST Privacy Framework 1.0 references they map to.
Your highest-priority gaps
Evidence that would answer each gap
What an assessor, a customer or an auditor would ask to see. Having it is the difference between a readiness indicator and a verified result.
Recommended next steps
Assessment methodology: aligned to the NIST Privacy Framework 1.0 with crosswalks to GDPR and U.S. state privacy law themes. It reports a readiness indicator based on your answers; it does not determine which privacy laws apply to you or that you comply with any of them. Confirm applicability with qualified privacy counsel.
Please note: This assessment provides a readiness indicator based on the information provided. It does not constitute legal advice or a determination that any privacy law applies or has been complied with. Applicability and compliance should be confirmed with qualified privacy counsel.
Recommended full assessment: Privacy & Data Protection Readiness Assessment
Customers, regulators and enterprise procurement now ask the same question in different words: what personal data do you hold, why, where does it go, and who can prove it? Most growing companies have a privacy policy and a cookie banner but no data inventory, no tested subject-request process and no way to say which of the state, GDPR or sector rules actually reach them. 30 minutes to scope. No obligation.