Redress - Cost Exception, v1.0

Defines privacy requirements related to the costs of the ability of individuals to correct, amend, or delete sensitive information about themselves.

Assessment Step

1
Redress - Cost Exception (Redress-CostException)
Does the organization require that individuals' ability to correct, amend, or delete sensitive information about themselves that the organization holds may not be refused on cost grounds if the individual offers to pay the costs?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Parameter
Information Typesrequired
ENUM_MULTI : Select the type(s) of sensitive information that apply.
  • PII
  • PHI
  • III
  • IIHI
  • Other

Conformance Criteria (1)

C-1
Individuals' ability to correct, amend, or delete personal information about themselves that an organization holds may not be refused on cost grounds if the individual offers to pay the costs.
Citation
SAFE-HARBOR
Access