Included
- analysis of one specific process, its data categories and protection needs
- assessment of potential value and workload reduction
- technical feasibility, including the on-premise or EU-cloud question
- review of key risks, boundaries and approval stages
- initial legal classification under GDPR principles and the EU AI Act risk framework
- written recommendation for the next step