Have you had any violations of your internal privacy policies or violations of applicable privacy law in the past 36 months?
Explanation
Example Responses
Example Response 1
No, we have not experienced any violations of our internal privacy policies or applicable privacy laws in the past 36 months Our organization maintains a robust privacy compliance program that includes regular audits, employee training, and continuous monitoring We conduct quarterly privacy impact assessments and have implemented technical controls to enforce our privacy policies All potential privacy incidents are thoroughly investigated by our privacy team, and none have resulted in policy or legal violations during this period.
Example Response 2
Yes, we experienced one violation of applicable privacy law 24 months ago In January 2022, we discovered that one of our marketing systems was collecting geolocation data without proper consent notifications as required by GDPR The issue affected approximately 5,000 European users over a 2-week period Upon discovery, we immediately disabled the geolocation feature, notified affected users, deleted the improperly collected data, and self-reported to the relevant data protection authority We were issued a warning but no financial penalty Following this incident, we implemented a more rigorous privacy review process for all new features and conducted additional privacy training for our development and marketing teams We have had no subsequent violations.
Example Response 3
We are unable to definitively confirm whether any violations of privacy policies or laws have occurred in the past 36 months Our company was acquired 18 months ago, and the previous management did not maintain comprehensive privacy compliance records Since the acquisition, we have implemented a formal privacy program with clear policies, regular audits, and staff training We have not identified any violations during our tenure, but cannot speak with certainty about the entire 36-month period We are currently conducting a retrospective privacy assessment to identify any potential historical issues and will remediate any findings accordingly.
Context
- Tab
- Privacy
- Category
- General Privacy

