Take-Aways (AI)
  • The DPIA bot gra­du­al­ly car­ri­es out a data pro­tec­tion impact assess­ment (DPIA) in accordance with Swiss law, inclu­ding pro­ject descrip­ti­on and documentation.
  • It inclu­des data mini­mizati­on, thres­hold ana­ly­sis, gross and net risk deter­mi­na­ti­on and review of the duty to con­sult with the FDPIC.
  • The bot sup­ports the risk assess­ment and pro­vi­des tem­pla­tes, but does not replace the inde­pen­dent legal review.

A new prompt in our Prompt Libra­ry car­ri­es out data pro­tec­tion impact assess­ments (DPIA) based on Swiss law, the DPIA – Data Pri­va­cy Impact Analyzer.

The bot gui­des you step by step through a DSFA:

  1. Pro­ject description
  2. Data mini­mizati­on – could the pro­ce­s­sing be fur­ther reduced
  3. Thres­hold ana­ly­sis – must a DPIA be car­ri­ed out (optio­nal)
  4. Risk assess­ment, with the gross risk based on the TOMs to be applied any­way and the net risk if fur­ther TOMs are to be taken
  5. Exami­na­ti­on of an obli­ga­ti­on to con­sult with the FDPIC
  6. Sum­ma­ry and documentation

Of cour­se, the bot does not replace your own audit, but it can pro­vi­de sup­port. It is also sui­ta­ble for asses­sing (data pro­tec­tion) risks out­side of a DPIA.

A tem­p­la­te for a DSFA can be found at Down­loads.