DataGuard turns Tanzania's Personal Data Protection Act into plain-language questions, a clear picture of your gaps, and the tasks and evidence to close them — so any team can run a real programme, not just lawyers.
Coverage describes assessed and evidenced controls. It is not a statement of legal compliance.
The dashboard — live coverage across the 123 mapped controls, by domain.
Whether you hold the data, run the programme, or advise others, DataGuard meets you where you are.
NGOs, clinics, SACCOs, schools and businesses. See where you stand against the Act without needing a law degree — plain questions, clear next steps.
Run the whole programme in one place: assessment, risks, tasks, evidence, rights requests and breach cases — each tied back to the Act.
Manage many clients as separate, private tenants. Switch between them without anything leaking across organisations.
Each control becomes a question about how your organisation really operates. You choose an honest answer, add a note, and attach evidence. The statutory reference and why it matters ride along with every one — and a gap can become a remediation task in a click.
One place for the assessment, the risks it raises, the tasks that close them, the records you keep and the evidence that proves it.
Answer plain-language questions about your organisation. The legal reference travels with every answer and your progress saves as you go.
Every duty in the PDPA 2022 mapped to a practical control with its section, expected evidence and a default risk level.
Findings become risks scored on a transparent 5×5 method, and remediation tasks with an owner and due date.
Data inventory, sensitive-data register, retention schedule and a live data map of where personal data flows.
A time-boxed queue for data-subject requests and a guided breach intake whose timeline is the evidence of notification.
Attach the documents that prove each control operates, then export a report that names the framework and matrix version.
Work through the controls for your organisation, one domain at a time. Answers and notes save per user, per control.
Turn gaps into risks and tasks with an owner and a reason, so the work to close each one is always in front of you.
Attach evidence to controls, then export a dated report that states the framework version its figures were drawn from.
Every control cites its provision and is labelled by how far it sits from the statutory text — directly stated, derived, or a practical interpretation. Where the Act leaves detail to regulations, DataGuard says so rather than inventing an answer. It supports compliance management; it does not constitute legal advice or certification.
No. Every control is written as a plain-language question about how your organisation actually works. The legal wording is there if you want it, but you answer in ordinary terms.
No. DataGuard is a compliance-management tool. It maps the Act into practical controls and tracks your work, but it does not constitute legal advice or certify compliance. Where the Act leaves detail to regulations, it says so.
Each organisation is a separate tenant. Your answers, evidence and records are private to your workspace and protected by row-level security — other organisations cannot see them.
It describes how many mapped controls you have assessed and evidenced — fully implemented controls count fully, partial ones by half. It is not a statement that you are legally compliant.
About a minute. Create a workspace, name your organisation, and you are taken straight into the assessment.
Create a workspace in a minute. Your answers, evidence and tasks are private to your organisation.