Processing activity records
Use this page when your department starts or changes a business process that uses personal data.
Open RoPA pageThe Northstar Privacy, Governance and Compliance team helps employees document processing activities, handle privacy rights requests, assess AI use cases, and keep evidence audit-ready across Germany, Ireland and the United Kingdom.
Use this page when your department starts or changes a business process that uses personal data.
Open RoPA pageSubmit and route requests from applicants, employees, customers or other individuals exercising privacy rights.
Open DSR pageRegister AI ideas before use, document ownership, assess risk and obtain approvals where required.
Open AI pageThis fictional demo team supports Northstar business units before new data use starts. It coordinates privacy, governance, compliance, legal, HR and information security input in one practical workflow.
We translate privacy and compliance requirements into practical workflows. Our work covers records of processing activities, privacy notices, data subject rights, supplier privacy checks, data transfer documentation, DPIAs, AI use-case review and readiness for audits.
Start with the page that matches your activity. New business process with personal data: RoPA. Individual asking about their data: DSR. AI system, AI vendor, model or automated decision support: AI Governance.
Start with RoPA