Law / Frameworks / NIST Privacy Framework / Communicate-P

NIST Privacy Framework, Communicate-PCM.PO-P1

Transparency policies, processes, and procedures for communicating data processing purposes, practices, and associated privacy risks are established and in place.NIST Privacy Framework, version 1.0, January 2020, CM.PO-P1

We read each law below as bearing on this control. That does not mean the control, done well, meets the law: what each law asks is on its own page. Corpus as of .

2
laws
2
places
0
with court rulings behind them
0
not yet in force

The same ground elsewhere linked through the kinds of duty both controls are mapped from

  • China
  • Zimbabwe

Comprehensive regime

1 law, 1 place
PlaceLawWhat it asks, as read here
Zimbabwe Cyber and Data Protection Act [Chapter 12:07]

Take the security measures section 18 requires, keep your processing open as section 23 requires, and be accountable for it as section 24 requires.

Data subject rights

1 law, 1 place
PlaceLawWhat it asks, as read here
China Personal Information Protection Law, automated decisions

Ensure transparency and non-discriminatory treatment in any automated decision made using personal information, and do not use it for unreasonable differential pricing.

Full text of the NIST Privacy Framework, public domain (a US government work). Every control of the framework.