CCPA / CPRA Compliance Auditor
Audit privacy policies against mandatory California consumer disclosures, "Do Not Sell or Share" opt-out links, and 12-month lookback periods.
California Privacy Rights (CCPA / CPRA) Compliance Guide
Mandatory legal disclosures for businesses operating in or targeting California consumers.
The California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA) grants residents unprecedented control over their personal data. Fines imposed by the California Privacy Protection Agency (CPPA) reach up to $7,500 per intentional violation.
1. "Do Not Sell or Share My Personal Info"
Businesses selling or sharing consumer data for cross-context behavioral advertising must provide a clear opt-out mechanism.
2. 12-Month Access Lookback Disclosure
Policies must categorize personal information collected, sold, or shared in the preceding 12 months.
3. Right to Limit Sensitive Personal Info
Consumers can direct businesses to restrict the use of Sensitive Personal Information (SPI) like SSNs, precise location, and financial accounts.
4. Non-Discrimination Rights Notice
Policies must explicitly declare that exercising privacy rights will not result in denied services or discriminatory pricing.