SOC 2
Privacy
18 controls in this category. Click any control to see implementation guidance, evidence requirements, and common audit failures.
P1.1 high
Privacy — Notice of Privacy Practices
Privacy
P1.2 medium
Privacy — Covers Required Privacy Elements
Privacy
P2.1 high
Privacy — Choice and Consent
Privacy
P4.1 high
Privacy — Use of Personal Information Limited to Identified Purpose
Privacy
P3.1 high
Privacy — Collection Limited to Identified Purpose
Privacy
P3.2 high
Privacy — Consent for New Purposes or Uses
Privacy
P4.2 high
Privacy — Retention of Personal Information
Privacy
P4.3 high
Privacy — Disposal of Personal Information
Privacy
P5.2 medium
Privacy — Correction of Personal Information
Privacy
P6.1 high
Privacy — Disclosure to Third Parties
Privacy
P5.1 high
Privacy — Access to Personal Information
Privacy
P6.2 medium
Privacy — Authorized Disclosures Only
Privacy
P6.3 high
Privacy — Unauthorized Disclosure Notification
Privacy
P6.4 critical
Privacy — Notification of Unauthorized Disclosures
Privacy
P6.5 medium
Privacy — Accounting of Disclosures
Privacy
P6.6 high
Privacy — Cross-Border Data Transfers
Privacy
P6.7 medium
Privacy — Dispute Resolution and Complaint Handling
Privacy
P7.1 medium
Privacy — Quality of Personal Information
Privacy
Assess SOC 2 Privacy
Track every control, collect evidence, and generate audit-ready reports with AuditFront.
Start Free Assessment