Bespoke method
We help you articulate the purposes of the research, the key research questions, the specific DSA systemic risk it addresses, and the data required to answer it.
We assess your organisation-wide compliance, including governance, policies, security and accountability, to establish where you stand before you apply.
We trace how personal data will be accessed, analysed, stored and deleted for the research project.
We benchmark the project against the GDPR requirements relevant to data access and produce a gap analysis setting out evidence of compliance, gaps and recommended measures.
We identify an appropriate legal bases and, where sensitive data is involved, a valid exception, supported by a legitimate interest assessment or a data protection impact assessment (DPIA) where required.
We pinpoint where the project may fall short of compliance, along with the data protection risks specific to how the data will be used, and how to remediate them.
We set out prioritised, workable steps and application-ready documentation (such as records of processing, data subject information notices and third-party reviews) to support your reasoned request to the Digital Services Coordinator.
We help you articulate the purposes of the research, the key research questions, the specific DSA systemic risk it addresses, and the data required to answer it.
We assess your organisation-wide compliance, including governance, policies, security and accountability, to establish where you stand before you apply.
We trace how personal data will be accessed, analysed, stored and deleted for the research project.
We benchmark the project against the GDPR requirements relevant to data access and produce a gap analysis setting out evidence of compliance, gaps and recommended measures.
We identify an appropriate legal bases and, where sensitive data is involved, a valid exception, supported by a legitimate interest assessment or a data protection impact assessment (DPIA) where required.
We pinpoint where the project may fall short of compliance, along with the data protection risks specific to how the data will be used, and how to remediate them.
We set out prioritised, workable steps and application-ready documentation (such as records of processing, data subject information notices and third-party reviews) to support your reasoned request to the Digital Services Coordinator.
Our compliance specialists are GDPR experts and former data protection officers with extensive experience of complex, cross-jurisdictional processing environments and novel technologies, including social media monitoring and platform research. They combine deep legal expertise with the technical and organisational understanding needed to make compliance meaningful and workable, not box-ticking.