Privacy request management, minus the chaos

Handle privacy requests in one clear workspace

Receive, review, and respond to data subject access requests (DSARs). One guided process for teams without a dedicated privacy department.

No credit cardGDPR & CCPA workflowsGuided setup
Access request for Alex Morgan, assigned to the current operator, with an on-track deadline, the next verification step, and five workflow milestones.
One case, from next step to deadline. Fictional data. Select image to enlarge.
Explore the request workflow
The usual problem

Shared inboxes break down as request volume grows

Privacy work can span support, operations, engineering, and legal review. Without a shared process, the details get split across tools and people.

Today

A request lands in a shared inbox

  • No one is sure who owns it or when it is due
  • Identity gets checked over email, if at all
  • Supporting files are scattered across DMs and exports
  • There is no clear record to review later
With Privacy Requests

A request becomes a tracked case

  • One owner and a visible due date
  • Identity checked before anything is shared
  • Follow-up stays tied to the request
  • A complete record you can export later
One guided path

Every request follows the same path

From the moment a request arrives to the day you finish it, each step stays visible and easy to review.

01

Receive

People submit requests through a hosted portal.

02

Check

Review identity before anything sensitive moves.

03

Assign

Send follow-up to the right people.

04

Review

Prepare the response and get it checked.

05

Send

Use expiring links instead of email attachments.

06

Keep record

Keep the history of what happened in one place.

Built for the work between intake and delivery

Keep the next action visible

Privacy Requests helps your team focus on the work that needs attention, keep requesters informed, and finish each case with a complete record.

Work by what needs attention

Use priority queues, saved inbox views, reminders, and escalation alerts to keep deadlines and unassigned work from slipping through.

Give requesters a clear next step

Requesters can check a secure status link, confirm their identity when needed, and receive sensitive materials through controlled delivery.

Know when a case is ready to close

See whether verification, fulfillment, approval, delivery evidence, and the final export are complete before you close the case.

What you get

Built for the work, not the org chart

The essentials you need to manage requests without extra process overhead.

Hosted intake portal

Give people a clean, branded place to send a request. Use one portal or tailor separate intake flows by product or brand, then route each submission with the context your team needs to start.

CaseTypeStatusDue
DSR-1040AccessNewin 6d
DSR-1039ErasureScopingin 9d
DSR-1038PortabilityReadyin 9d

Case ownership

See who owns each request and what still needs attention.

Deadline tracking

Keep due dates visible and know when something needs attention.

Evidence tasks

Break follow-up into small tasks and keep each one tied to the request.

Secure delivery

Send response files through expiring, revocable links instead of email attachments.

Audit-ready trail

Keep a clear history of the decisions and actions that mattered.

Designed for sensitive work

Security that matches the sensitivity of the work

You are handling real personal data. Access, delivery, and history need to stay controlled from the start.

Limited access

Cases are shared within your workspace. Member roles control which actions people can take; assigning an owner does not make a case private.

Secure delivery

Response materials go out through expiring links with revocation, passcodes, and access logs.

Auditability

Important actions create a history you can review later.

Supports your request workflow. Your team reviews suggested deadlines and makes disclosure decisions.

GDPR request workflowsCCPA / CPRA request workflowsEncrypted at restRole-based access

Review service facts and available security materials

Monthly plans

Grow into the tools your team needs.

Every plan includes unlimited DSARs and a complete request workflow. Add collaboration and integrations as your team grows.

Free

$0Free plan

Unlimited DSARs, 2 members, 1 portal, and 1 GB of file storage. All core workflow and delivery features are included.

Planned paid plans · USD

Paid upgrades are currently unavailable. Start free or ask about future plan availability.

  • Team — $29/month (planned)Unlimited DSARs · reusable templates and routing · 5 members
  • Business — $99/month (planned)Unlimited DSARs · 20 members · API, webhooks and ordered approvals

Common questions

What to know before you start

What is Privacy Requests?

Privacy Requests is DSAR management software for startups and growing teams. It brings hosted intake, identity review, deadline tracking, assigned tasks, response approval, secure delivery and an audit trail into one workspace.

Which privacy requests can a team manage?

Teams can receive and track access, deletion, correction, portability, opt-out and general privacy requests. A request owner coordinates the work, and reviewers document decisions before a response is sent.

Does the software make legal or disclosure decisions?

No. Suggested deadlines support planning and need review by your team. Identity checks, disclosure decisions and final responses require human review. Privacy Requests organizes the workflow; it does not provide legal advice.

Does it automatically find or delete personal data in other systems?

No. Teams assign evidence tasks to the people responsible for their systems and collect the results in the case. API access and webhooks are Business features, but do not automatically discover or delete records across your systems. Paid upgrades are currently unavailable.

Explore the workflow, compare plans, or review service facts and security information.

Free resources

Put a repeatable process on paper

Use an editable request tracker, intake checklist, search worksheet, reviewer handoff, and response approval checklist. Download them without creating an account.

Get the free DSAR operations toolkit

See how the handoffs fit together

Follow a fictional request from intake to a documented response. The worked example shows what each person records, what the reviewer checks, and what remains a human decision.

Read the synthetic worked example

From evaluation to everyday work

See the process. Then try it with your team.

Follow a fictional request through the actual product screens, from the public form to the final case record. When you are ready, use the setup checklist to prepare the people and handoffs behind the workflow.

Turn your next request into a tracked case

Set up your portal, invite your team, and handle DSARs from one calm workspace — starting today.