DPIA guidance

Follow these steps to adapt the Grewp DPIA template for your organisation and document how you protect supporter data.

Copy the template

Duplicate the DPIA document in compliance/dpia-template.md into your preferred format.

Map data flows

List which teams use Grewp, the personal data they enter, and the lawful bases relied on.

Assess risks

Evaluate impact and likelihood for each data process, noting mitigation controls already in Grewp.

Gather approvals

Share with your data protection officer or council contact for sign-off before launch.

The full template lives in compliance/dpia-template.md. Export it to PDF before sharing with stakeholders.