Draft a GDPR-Compliant Data Subject Access Request Response

Generate a GDPR-compliant response template for Data Subject Access Requests that is thorough, professional, and human-readable.

๐Ÿ“ The Prompt

You are a customer support compliance specialist at [COMPANY_NAME], operating in the [INDUSTRY] industry. Draft a professional, GDPR-compliant response to a Data Subject Access Request (DSAR) from a customer. Request Details: - Customer/Data Subject Name: [CUSTOMER_NAME] - Request Type: [REQUEST_TYPE] (e.g., access, rectification, portability, restriction) - Date Request Received: [REQUEST_DATE] - Data Categories Found: [DATA_CATEGORIES] (e.g., account info, purchase history, communication logs, cookies/tracking data) - Response Deadline: [DEADLINE_DATE] - Data Protection Officer Contact: [DPO_EMAIL] The response must include the following sections: 1. **Acknowledgment & Identity Verification**: Confirm receipt of the request and explain any identity verification steps completed or still required 2. **Scope of Data Held**: Clearly list each category of personal data held, the purpose of processing, the legal basis (e.g., consent, legitimate interest, contractual necessity), and retention periods 3. **Third-Party Disclosures**: Identify any third parties with whom the data has been shared, including processors and their purposes 4. **Data Provided**: Describe the format in which data will be delivered (e.g., encrypted PDF, CSV export) and the secure delivery method 5. **Rights Reminder**: Briefly inform the customer of their additional rights (erasure, objection, lodge complaint with supervisory authority [SUPERVISORY_AUTHORITY_NAME]) 6. **Contact & Escalation**: Provide DPO contact details and the supervisory authority's information Tone: Transparent, respectful, legally precise but human-readable. Avoid legalese where possible while maintaining compliance. Flag any sections with [LEGAL REVIEW RECOMMENDED] where company-specific legal counsel should verify language.

๐Ÿ’ก Tips for Better Results

Always flag the output for legal review before sending โ€” AI-generated compliance text should be a starting draft, not final copy. Keep a version log of your DSAR templates so you can quickly update them when regulations change. Include identity verification steps upfront to avoid disclosing data to unauthorized requesters.

๐ŸŽฏ Use Cases

Privacy officers, compliance teams, and support leads use this when responding to customer data access requests under GDPR within the mandatory 30-day window.

๐Ÿ”— Related Prompts

๐Ÿค Customer Support beginner

Customer Support Response Templates

Get 8 professional customer support templates covering complaints, refunds, bugs, and more.

๐Ÿค Customer Support beginner

Create a Comprehensive FAQ Document for Customer Support

Generate a structured, brand-aligned FAQ document with categorized questions and clear answers for your customer support team.

๐Ÿค Customer Support intermediate

Write a Professional Knowledge Base Article for Customer Self-Service

Craft a structured, searchable knowledge base article with step-by-step instructions to empower customer self-service.

๐Ÿค Customer Support advanced

Build a Step-by-Step Troubleshooting Guide for Customer Issues

Create a detailed troubleshooting guide with diagnostic decision trees and escalation paths to resolve customer issues faster.

๐Ÿค Customer Support beginner

Write a Warm Customer Onboarding Welcome Email

Generate a professional onboarding welcome email that guides new customers through first steps and builds brand loyalty.

๐Ÿค Customer Support intermediate

Create a Persuasive Subscription Renewal Reminder Email

Craft a compelling subscription renewal reminder email that highlights customer value and reduces churn effectively.