Exantur
Menu

Coaching data-privacy (GDPR) check

Coaching notes hold sensitive personal data. This quick check shows where your practice looks GDPR-ready and where to tighten up. It is guidance, not legal advice, and nothing is stored.

Data location

Do you know where your client data is hosted?

Access control

Is access protected (strong auth, per-user access)?

Data-subject rights

Can you export or erase a client’s data on request?

Processor agreements

Do your tools offer a Data Processing Agreement (DPA)?

This scorecard walks you through the everyday habits that decide whether your coaching practice really respects the personal data it collects. Instead of a legal audit, it asks plain questions about where notes live, who can open them, how you gain consent, how long you keep records and what you would do if a client asked to see or delete their file. Your answers become a simple readiness picture, so you can see which areas look sound and which deserve attention before your next session.

Read the result as a set of priorities, not a pass or fail mark. A weak area usually points to one concrete fix, such as moving from a personal inbox to a secure store, adding a second login step, or writing down a retention period you can defend. Because nothing you enter is saved, you can run the check as often as you like and treat it as a private prompt for tidying your own systems.

Handling client information with care is part of the trust coaching depends on, and clients increasingly expect it. Keeping notes, consent and access in order inside one calm coaching workspace makes that easier to sustain over time.