Compliance & Regulations/Latin America & Africa/LGPD
Privacy · Brazil

Brazil LGPD

Brazil's General Data Protection Law — broadly aligned with GDPR with Brazil-specific enforcement and DPO regime.

Regulator
Autoridade Nacional de Proteção de Dados (ANPD)
Jurisdiction
Brazil
Status
Active.
In force since
August 2020 (sanctions from August 2021).
Regulator's source
Who it applies to

Any organisation processing personal data of data subjects in Brazil.

Audit / certification status

Continuous evidence pipeline available; audit support included for all customers.

What it requires

What LGPD actually requires.

These are the obligations a regulated entity owes — the things an assessor or supervisor will ask about.

01

Lawful basis for processing.

02

Data Protection Officer (Encarregado) appointment.

03

ANPD notification of breaches likely to cause significant risk or damage.

04

International transfer mechanisms aligned with ANPD regulation.

How Safeguard maps to it

Pre-mapped controls. Continuous evidence.

Each requirement above is bound to live telemetry — not screenshots. The mapping below is what your auditor or regulator sees.

ANPD notification template and timer.

Encarregado registry with role evidence.

Evidence we produce

Artifacts your auditor accepts.

Each evidence artifact is signed and timestamped. Auditors can verify integrity without trusting Safeguard.

Article 37 LGPD record (analogous to GDPR Art. 30).

ANPD breach register.

Ready for LGPD?

Bring the framework. We'll walk the controls with you — section by section, evidence packet by evidence packet, with the regulators you actually have to answer to.

Safeguard | Software Supply Chain Security Platform | Zero CVE + Self-Healing