SOC 2
Privacy
18 controls in this category. Click any control to see implementation guidance, evidence requirements, and common audit failures.
P1.1 high
Privacy - Notice of Privacy Practices
Privacy
P1.2 medium
Privacy - Covers Required Privacy Elements
Privacy
P2.1 high
Privacy - Choice and Consent
Privacy
P3.1 high
Privacy - Collection Limited to Identified Purpose
Privacy
P4.1 high
Privacy - Use of Personal Information Limited to Identified Purpose
Privacy
P3.2 high
Privacy - Consent for New Purposes or Uses
Privacy
P4.2 high
Privacy - Retention of Personal Information
Privacy
P4.3 high
Privacy - Disposal of Personal Information
Privacy
P5.1 high
Privacy - Access to Personal Information
Privacy
P5.2 medium
Privacy - Correction of Personal Information
Privacy
P6.1 high
Privacy - Disclosure to Third Parties
Privacy
P6.2 medium
Privacy - Authorized Disclosures Only
Privacy
P6.3 high
Privacy - Unauthorized Disclosure Notification
Privacy
P6.4 critical
Privacy - Notification of Unauthorized Disclosures
Privacy
P6.5 medium
Privacy - Accounting of Disclosures
Privacy
P6.6 high
Privacy - Cross-Border Data Transfers
Privacy
P6.7 medium
Privacy - Dispute Resolution and Complaint Handling
Privacy
P7.1 medium
Privacy - Quality of Personal Information
Privacy
Assess SOC 2 Privacy
Track every control, collect evidence, and generate audit-ready reports with AuditFront.
Start Free Assessment