Privacy Policies Built for CCPA Compliance

Page 1

KirkpatrickPrice

Privacy Policies Built for CCPA Compliance Do you need to update your privacy policy to meet CCPA Requirements? Section 1798.130(b) of the CCPA states the required information that should be provided when personal information is collected from California consumers. Following this guidance and others, this checklist should help your organization create a CCPA-compliant privacy policy.

To ensure fair and transparent processing in accordance with CCPA, 1798.130(5), the law states that privacy policies must do the following: • Provide a description of consumers’ rights under CCPA • 1798.130(a)(5)(A) • Define the purposes of processing • 1798.100(a) • Define the categories of personal information to be collected • 1798.100(b) • Define the categories of sources from which the organization collects personal data • 1798.110(c)(2) • Define the process for requesting personal information • 1798.100(c)

• Define the right to opt out of selling personal information • 1798.120(a) • If the organization sells or discloses personal data to third parties, define the categories of personal data sold/disclosed to those third parties • 1798.30(a)(5)(C) • Identify whether the organization has sold or disclosed personal data to third parties within the last 12 months • 1798.30(a)(5)(C) • Explain that a business shall not discriminate against a consumer for exercising their rights under the CCPA • 1798.125(a)(1) • Explain that businesses may offer financial incentives for providing personal information, the sale of personal information, or the deletion of personal information • 1798.125(b)(1) • Include two or more designated methods for submitting a request for information to be disclosed • 1798.130(a)(1) • Explain that businesses must disclose and deliver information within 45 days of receiving a verifiable request, free of charge • 1798.130(a)(2)

• Define the right to deletion • 1798.150(a)

• Include a separate link the “Do Not Sell My Personal Information” Internet web page • 1798.135(a)(2)(B)

• Define the right to disclosure • 1798.110(a)

• Be updated every 12 months • 1798.130(5)

• Define the processes for selling and disclosing consumers’ personal information • 1798.115(a)


Turn static files into dynamic content formats.

Create a flipbook
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.