Use this checklist before publishing or certifying your privacy policy. Clerica scores disclosure clarity on verify pages — not legal adequacy — but strong items correlate with higher rubric scores and customer trust.
Checklist
- [ ] Company legal name and contact email published
- [ ] Data categories named specifically (not vague catch-alls)
- [ ] Each major subprocessor named (Stripe, Google, AWS, etc.)
- [ ] Purposes tied to each data category
- [ ] Retention periods or clear criteria stated
- [ ] Deletion/account closure path explained
- [ ] Marketing opt-out instructions included if applicable
- [ ] Cookie/analytics disclosure matches live site behavior
- [ ] International users addressed (GDPR/CCPA sections as needed)
- [ ] Children's privacy section if under-13/16 audience possible
- [ ] Security practices described at high level (no false promises)
- [ ] Third-party links disclaimer if user leaves site
- [ ] Policy version or Last updated date visible
- [ ] Plain-language headings scannable in 60 seconds
- [ ] Contact path tested — privacy@ resolves
- [ ] Verify page or certification badge if using Clerica Certified
- [ ] No contradictions between policy and marketing site claims
- [ ] Terms cross-linked where service relationship exists
How Clerica uses this
Certification rubric rewards specificity, readable structure, and substantive coverage. Consumer-Friendly badge requires score ≥ 75 on active Certified subscription.
After publish
Material policy changes without updates may trigger integrity scan drift — downgrade certification until fixed.
Tools: Privacy Policy Generator · How to write a privacy policy · Business FAQ
Clerica is not a law firm and does not provide legal advice. This guide is educational. Consult qualified counsel for jurisdiction-specific requirements.