Praeferre/Frameworks
Compliance Frameworks

Every framework, explained plainly — with a direct line to the source.

Praeferre's GRC engine monitors against all of these frameworks and more, including your own internal policies. Each page below gives you the plain-English version — what it is, who it applies to, what it requires, what it costs to get wrong — and links straight through to the official regulator or standards body for the authoritative text.

21 FRAMEWORKS COVERED 13 PRIVACY & DATA PROTECTION 8 SECURITY & ASSURANCE GLOBAL COVERAGE
One hub, every framework

Everything Praeferre monitors, in one map

Click any node to jump straight to that framework's page. GDPR, PIPA, SOC 2, POPIA and DPDP — Praeferre's five most-requested frameworks — are highlighted in blue.

01

Privacy & Data Protection

European Union / EEA

GDPR

The EU's foundational data protection law, giving individuals rights over their personal data and requiring…

View framework
United Kingdom

UK GDPR

The UK's version of the GDPR, retained in domestic law after Brexit and read alongside the Data Protection Act 2018.…

View framework
India

DPDP Act

India's first comprehensive digital data protection law, built around plain-language principles (consent, purpose…

View framework
South Africa

POPIA

South Africa's principal data protection law, similar in structure to the GDPR. It sets eight conditions for lawful…

View framework
South Korea

PIPA

South Korea's comprehensive data protection law, enforced by an independent regulator with strong investigative and…

View framework
California, United States

CCPA / CPRA

The first comprehensive consumer privacy law in the United States, giving California residents rights to know,…

View framework
Brazil

LGPD

Brazil's general data protection law, closely modelled on the GDPR. It sets out lawful bases for processing, data…

View framework
Canada

PIPEDA

Canada's federal private-sector privacy law, governing how organisations collect, use and disclose personal…

View framework
Japan

APPI

Japan's core data protection law, overseen by the independent Personal Information Protection Commission. It combines…

View framework
Singapore

PDPA

Singapore's data protection law, balancing individual rights with the country's data-driven economy. It's enforced by…

View framework
Australia

Privacy Act 1988

Australia's principal privacy law, built around 13 Australian Privacy Principles covering collection, use, disclosure…

View framework
United Arab Emirates

UAE PDPL

The UAE's federal personal data protection law, applying across the mainland alongside separate data protection…

View framework
Saudi Arabia

Saudi PDPL

Saudi Arabia's first comprehensive data protection law, administered by SDAIA. It sets out consent, purpose…

View framework
02

Security, Resilience & Assurance

Don't see your framework?

We model custom and internal frameworks too

Every organisation has policies beyond the standard list. Praeferre's GRC engine maps your own internal frameworks with the same rigour as GDPR or ISO 27001.