DSAR & compliance
+ New DSAR intakeThe operator's compliance overview across all federations β DSAR, DPIA, retention, residency and incidents. Requests arrive by email/phone/supervisory authority where the requester has no login. 30-day SLA with a documented extension of up to 2 months.
7
open DSARs
β 1 with < 7 d to deadline
12
DPIAs
β 2 overdue reviews
1
retention anomaly
β row outliving its TTL
1
residency drift
β FIPJP federation
Cross-tenant DSAR tracker β
Intake/triage/execution Β· 30-day SLA Β· deadline countdown
GDPR snapshot β
Support triage Β· 13 redacted categories (never a DSAR response)
DPIA register (Art. 35) β
Risk assessment LΓS Β· overdue reviews
Retention drift β
Configured TTL vs. oldest observed row
Data residency β
Required vs. actual region per tenant Β· never auto-fixed
Art. 33/34 incident notification β
72-hour window Β· dry run β dispatch Β· immutable log
Cross-tenant DSAR tracker
Allaccessexporterasure
Allreceivedvalidatedin_progresscompletedrejected
π No DSARs in this view.
β³ Loadingβ¦
DSAR intake & case handling
Re-execute on completed β soft conflict (gdpr_already_completed). Execution is idempotent. Every mutation is audit-logged (WORM hash chain); drift is never auto-remediated.