GDPR compliance software
The GDPR module keeps the records a privacy program has to show: who the data subject is, what was consented, which processing exists, and what happened in a breach.
The records
The module includes a data-subject and consent registry, the record of processing activities, data-subject requests, retention policies, a data protection impact assessment, breach incidents, reports, and export. GDPR is also one of the frameworks in the compliance module, so the control evidence can sit beside these registers.
What it does not decide
The module does not replace a privacy lawyer or a supervisory authority. A personal-data breach recorded here is not the same object as a general security incident, which stays in the incident registry. The knowledge base has a GDPR overview for the regulation itself.