Self-assessment for data breaches
-
1. A personal data breach (PDB) can be broadly defined as a security incident that has affected the confidentiality, integrity or availability of personal data. Have you determined whether a PDB has occurred?
Yes
-
2. Making your own assessment, does the breach involve the personal data of living individuals?
Yes
-
3. Following your own assessment, is there likely to be a high risk to individuals’ rights and freedoms?
No
-
4. How likely is it that the breach will result in a risk to individuals?
I'm not sure
-
5. Do you consider the data to be contained and the risk to data subjects mitigated?
No
No, the risk to the data subject has not been mitigated
Please ring our helpline to discuss the breach in more detail. We can offer advice on how to manage the breach and mitigate its effect. The helpline, on 0303 123 1113 is usually open Monday to Friday from 9am until 5pm. If the helpline is closed, you may prefer to report the breach without delay. You can do this online.
You are required to report breaches within 72 hours of becoming aware of them.
Health and care organisations in England should report breaches using the Data Security and Protection Incident Reporting tool. For guidance on how to use the tool, see the toolkit help pages.
You may want to take a screen shot of this page or use your browser to print the page so that you have a record of your assessment.
Return to the Report a breach page.