Dashboard
Dashboard Modules
6 modules, 4 audiences. 129 scores. All values computed from your actual scan — zero hardcoded constants.
| Module | For | What It Shows |
|---|---|---|
| Executive | CEO, CFO | Global score, trajectory, top risks summary |
| Privacy Risk | CEO, CFO, Consultant | Financial exposure (€/$), Breach Simulation, GDPR/CCPA/NIS2 fines article-by-article |
| Compliance Risk | DPO, Legal, CISO | GDPR, CCPA, NIS2, SOC2, AI Act scored A-F. DORA + HIPAA via remediation actions |
| Protection Risk | MSP, Backup, IT, CISO | Data Protection Simulation (5 disaster scenarios costed), RPO/RTO, encryption posture |
| Quality & AI | CTO, CDO, AI Integrator | AI Readiness, data quality, governance, data lineage, AI Act Art. 10/15 |
| Scoreboard | Auditor, Consultant | 71 scores, 319 metrics — full registry with grades |
Executive
For: CEO, CFO — the 30-second view.
- Global risk grade (A–F) with score trajectory
- Top 3 risks with financial impact
- Priority actions summary (P1/P2/P3)
- Sources scanned + last scan date
Key metric: The global score is a weighted average of the 4 pillar scores —
Privacy Risk, Compliance Risk, Protection Risk, and Quality & AI.
Each pillar weighted by regulatory impact.
Privacy Risk
For: CEO, CFO, Consultants — the financial answer to "how much are we exposed?"
Measured, not estimated.
- Financial exposure in € and $ — computed from PII count, source type, GDPR/CCPA/NIS2 penalty formulas article by article
- Breach Simulation — 5 quantified scenarios: fine, PR cost, remediation cost, business interruption, notification
- PII map — which files/tables have which PII types (44 types detected)
- Toxic combinations — detects high-risk PII co-location (IBAN + SSN in same file)
- Top risk zones — directories or tables with highest exposure
- Cyber Insurance Readiness — 8 cyber controls scored + declarative questionnaire
Compliance Risk
For: DPO, Legal, CISO — answers the auditor's questions before they ask them.
Scored, not declared.
- GDPR Art.5/9/30/32 — data minimization, special category, register, technical security
- CCPA / CPRA (§1798.100-150) — California consumer rights readiness
- NIS2 (Art. 21(2)) — network and information system security posture
- SOC 2 Type II — 5 Trust Services Criteria
- AI Act — Art. 10 (data governance) + Art. 15 (robustness & cybersecurity)
- DORA + HIPAA — covered via P1/P2 remediation actions (no dedicated score)
- Art. 30 register — processing activities cartography auto-generated
- Priority actions — P1/P2/P3 with deadlines and financial impact
Protection Risk
For: IT leads, MSPs, backup admins, CISO — the technical security posture.
Evaluated, not assumed.
- Infrastructure audit — hardware, RAID, SMART, backup agents, OS
- Backup assessment — 10-question evaluation, resilience scoring, RPO/RTO
- Data Protection Simulation — 5 disaster scenarios costed in $ (ransomware, server crash, accidental deletion, cloud loss, full disk)
- Quantified recovery costs — forensics, downtime, operational losses
- Encryption posture — which disks, databases, and cloud storage are encrypted
- Access surface — over-permissioned users, admin ratio, dormant accounts per source
Quality & AI
For: CTOs, CDOs, AI integrators — is your data AI-ready?
Is your data ready for AI?
- AI Readiness Score — infrastructure, quality, governance
- Data Quality — completeness, uniqueness, validity, timeliness
- Governance — 6 KPIs per table
- Data Lineage — views, triggers, procedures
- AI blockers — PII contamination, missing labels, schema instability
- AI Act pre-compliance — Art. 10 (data governance) and Art. 15 (robustness)
Scoreboard
For: Auditors, consultants — full transparency, all metrics, no black box.
- 71 scores with grade (A–F), value, and formula reference
- 319 raw metrics (D-IDs) — the data points that feed the scores
- Full registry with D-ID, source, and computation trace
- Export to JSON for integration with your own audit tools
All values are computed from your actual scan.
Zero hardcoded constants. Zero fake defaults. If a source is not scanned, the corresponding scores are absent — not set to zero.