# Privacy impact assessment

## Processing purpose

- User benefit and necessity:
- Data subjects and contexts:
- Lawful basis/consent owner (verify with qualified counsel):

## Data lifecycle

- Collection, derivation, storage, retrieval, sharing, and retention:
- Prompt, trace, memory, embedding, and backup locations:
- Cross-border/residency constraints:

## Risks and controls

- Overcollection, inference, linkage, leakage, misuse, and access risks:
- Minimization, redaction, encryption, access, audit, and separation controls:
- Human review exposure and reviewer safeguards:

## Rights and deletion

- Access/correction/export procedure:
- Deletion propagation targets and verification:
- Legal hold and conflict handling:

## Decision

- Privacy owner, residual risk, review date, and launch condition:

