The new Swiss Data Protection Act came into force on 01.09.2023 and applies in principle to all companies in Switzerland. These must now comply with extensive information and documentation obligations.
In particular, the creation of the directory of processing activities takes on a central role and forms the basis for the entire data protection documentation.
caralegal takes you by the hand and guides you step by step to FADP-compliant data protection documentation.
caralegal is your single source of truth for data protection, linking all required documents.
Manage directory of machining activities centrally
Document data protection impact assessment without duplicating effort
Plan and implement technical and organizational measures
Thanks to intuitive workflows, you set up structured processes with caralegal. This way, you know exactly what matters in detail in practice.
Manage information requests
Documenting Data Protection Violations in Conformity with the FADP
Easily identify data set
Thanks to numerous examples, explanations and templates, caralegal shows you what really matters in data protection management.
More than 400 templates for processing activities
Evaluate and release order processors in a legally compliant manner
Context-sensitive recommended actions
Thanks to the structured workflow, you enter all legally required information step by step.
Set editing purpose
Record categorization of personal data
Document retention period
Your editing activities are linked to all documents in caralegal, such as.
Order processor
Data protection impact assessment
Technical and organizational measures
For the creation of a VBT, data protection experts and specialist departments work together in caralegal in a target-oriented manner.
Assign responsibilities
Comment and task function
Simple approval process
Frequently asked questions / FAQs
Identity of the responsible person
Processing purpose
Description of the categories of data subjects and the categories of personal data processed
Categories of recipients
Retention period of the personal data or the criteria for determining this period
General description of the measures taken to ensure data security (appropriate technical and organizational measures that enable data security breaches to be avoided).
if the data are disclosed abroad, the indication of the country and the guarantees by which appropriate data protection is ensured