Getting started with Conformaze
Follow these 5 steps to set up your organization, document your first processing activities, and lay the groundwork for your compliance program.
Create your organization
On your first login, you are prompted to name your organization and choose its size and industry. This information allows Conformaze to tailor processing activity suggestions and applicable obligations to your context. If you operate in multiple jurisdictions (Law 25 and GDPR, for example), select them all: Conformaze will automatically adjust the requirements.
1. Create your organization
Complete the company profile
The profile screen collects your organization's legal information: name, address, business registration number (if applicable), and the primary contact person's details. This data feeds into PDF exports, privacy notices, and the designation of the Data Protection Officer (DPO). You can update it at any time under Settings > Profile.
Select suggested activities
After setup, Conformaze presents a list of common processing activities for your industry. Check the ones that apply to your organization — for example, payroll management, commercial prospecting, or IT access management. These selections become guided tasks in your dashboard. You can add more later through the ROPA Assistant.
Designate your DPO
Law 25 requires every organization to designate a Data Protection Officer (DPO). Go to Settings > Legal Roles to appoint this person. By default, the highest-ranking executive assumes this responsibility, but it can be delegated. The DPO will be identified in your exports and privacy policy.
4. Designate your DPO
Document your first activity
From the task board or Map > Processing activities, open your first activity and start filling in the information: purpose, data categories, retention periods, legal basis, and security measures. Don't aim for perfection on the first try — the registry is designed to evolve. You can save a draft and come back to it. Every change is tracked in the audit trail.