TruePrivacy DSR Automation handles deletion, access, correction, and portability requests end to end without manual work. Requests arrive through your Privacy Center, email, or API; TruePrivacy verifies the requester, scopes the request against your live data map, executes it across connected systems, and tracks every regulatory deadline.
DSR request queue showing open requests, deadlines, and statuses

Supported request types

TruePrivacy handles the full spectrum of data subject rights:
RightGDPR (Europe)India DPDPCCPA/CPRA
Access / subject access requestArt. 15Sec. 11Right to know
Erasure / deletionArt. 17Sec. 12Right to delete
Rectification / correctionArt. 16Sec. 12Right to correct
PortabilityArt. 20Right to know (portable format)
Restriction & objectionArt. 18, 21Opt-out of sale/sharing
Request types are configurable per regulation, so you only surface the rights relevant to your legal obligations.

The request lifecycle

1

Receive & verify

A data subject submits a request via the Privacy Center, a configurable email inbox, or the REST API. TruePrivacy captures the request, sends a verification challenge appropriate to its sensitivity, and starts the deadline clock. See Intake & Identity Verification.
2

Assess scope

TruePrivacy queries your live data map to identify every system holding data for the verified individual, and presents the scope to the handling team before execution.
3

Execute across systems

Deletion commands or data exports run in parallel across all in-scope connected systems. Exceptions and partial failures are flagged for human review. See Fulfillment.
4

Respond & close

A response is sent to the data subject with the outcome. The request closes with a full execution log, exportable as evidence of compliance.

Deadline tracking

Deadline rules are configured per regulation: GDPR requests are tracked against a 30-day clock, India DPDP against 30 days, and CCPA against 45 days. If a request could fall under multiple regulations, the most restrictive deadline applies and all are tracked simultaneously. Automatic reminders and escalations fire as requests approach their deadline, so you never miss a regulatory response window.

Collaboration and audit

  • Stakeholder routing — assign sub-tasks to engineering, HR, or legal with individual deadlines inside each request thread.
  • Bulk handling — verify, scope, and execute batches of similar requests in a single operation.
  • Immutable audit trail — every action (intake, verification, execution, response) is logged with timestamps and user attribution.

Intake & verification

Multi-channel intake and proportional identity verification.

Fulfillment

Cross-system execution, manual tasks, and responses.