Describe how personal information and/or business critical information are processed on the activity. The description should include the following:
- How data is collected. (fx from a specific third party in an automatic /manual form)
- How data is processed (e.g. analysis, archiving, link to other information, transfer or transfers to internal or external parties, deletion, etc.)
- Optional: reflections about specific information collected without it being necessary for the purpose.
- Optional: considerations about certain things you think are not working well in relation to the current data processing.
You can map data categories on third parties and systems