GDPR Control and Evidence Guides
Practical steps with official sources, implementation checks, product limits, and human review gates.
Google OAuth verification: privacy policy and release checklist
Prepare the app homepage, authorised domains, scopes, consent-screen details, privacy disclosures, demo evidence, and Google user-data controls.
GDPR accountability checklist: controls, evidence, and owners
Use this operational checklist to map processing, assign lawful bases, control vendors, implement rights, manage risk, and retain evidence.
How to publish and verify a GDPR.Direct Legal Hub
Configure the hosted document hub, verify every generated statement, hide inapplicable documents, add links or embeds, and test the public result.
Cookie consent implementation: an evidence-led technical guide
Inventory terminal storage, classify necessity, block non-essential operations, collect valid consent, and test withdrawal against the live website.
Data protection for psychology practices in Spain
A source-led review of health-data bases, clinical records, information duties, retention, rights, processors, DPOs, and DPIAs in Spain.
Data processing agreements for SaaS: an Article 28 worksheet
Build a controller-processor agreement from the actual service, instructions, security, subprocessors, rights support, deletion, and audits.
SaaS privacy notice worksheet: from data map to public draft
Collect the facts needed for a SaaS privacy notice, map them to Articles 13 and 14, and verify every statement against the live service.