Privacy Policy template
A privacy policy describes how an organisation collects, uses, shares, and protects personal data. It is a legal disclosure document — typically not signed, but acknowledged.
At a glance
Common fields
- Data controller identity
- Categories of personal data collected
- Purposes of processing
- Legal bases (GDPR)
- Data sharing and transfers
- Retention periods
- User rights
- Contact information for DPO
Roles that use this template
Related industry solutions
Frequently asked questions
What is a privacy policy?
A privacy policy describes how an organisation collects, uses, shares, and protects personal data. It is mandatory under GDPR, CCPA, LGPD, and similar regimes — typically published rather than signed, with separate consent for specific processing activities.
What fields does a privacy policy typically include?
Common fields include: Data controller identity; Categories of personal data collected; Purposes of processing; Legal bases (GDPR); Data sharing and transfers; Retention periods; User rights; Contact information for DPO.
Who signs a privacy policy?
The signatory roles are typically: Data controller (publisher), Data subject (acknowledgement).
Are there compliance considerations for a privacy policy?
Privacy policies are mandatory under GDPR (Articles 13–14), CCPA, LGPD, and similar regimes. They are typically published rather than signed; user consent for specific processing is captured separately.
Draft a Privacy Policy in seconds
Type a sentence. AI generates the full template, ready to send and sign. $29/month flat.
Get started free