Area 03
From October 2026

A workspace in which your documentation carries on between appointments.

In the portal you work. You record, you review, you approve, you control the access. CAYADA provides the structure, the templates and the traceability.

Outlook

The CAYADA compliance portal brings together curated information, structured input forms, templates, tasks, version histories and records. Users create and maintain their documentation on the basis of their own information and decisions. The portal can point to a need for review or updating and prepare working drafts.

Structure

Several modules in one workspace

The modules interlock but can be used individually. In each of them, selection, review and approval remain with the responsible person. The following description sets out the planned range of functions.

01

Curated knowledge base

Selected sources and content are structured, documented and version-controlled. The knowledge base supports operational compliance work; it does not replace a legal review of the individual case.

  • structured storage
  • version control
  • documented sources
02

Document preparation

The portal provides structured input forms and predefined text blocks. On that basis, users can prepare and develop working drafts. Selection, review and approval remain the task of the person responsible in each case.

  • data protection policies
  • data protection impact assessments
  • internal AI policies
  • AI registers
  • IT security policies
03

Processing documentation

Processing activities are recorded in a structured way and linked to the corresponding safeguards — maintainable over time rather than compiled once.

  • record of processing activities
  • technical and organisational measures
04

Whistleblower channel and case management

A protected intake channel, role-based handling, deadline tracking and traceable documentation support the responsible reporting office. Review, follow-up measures and feedback remain the task of the competent office appointed by the employer.

  • protected intake channel
  • role-based handling
  • deadline tracking
This module is software. If CAYADA is to operate the reporting office itself, that is a separate service: Internal reporting office as commissioned third party
05

Roles, permissions and records

You define who may view and edit which areas. Every change remains traceable through version histories and logs.

  • freely definable roles and permissions
  • customer-controlled access and export options for authorised persons
  • version histories and audit logging
06

Detecting changes

Drawing on maintained sources and version histories, the portal can point to a possible need for review or updating. Suggestions are not automatically adopted as binding; review and approval remain the task of the responsible person.

AI Regulation

AI policies and AI registers are document types in the portal like any other. You maintain the inventory yourselves; the portal provides the structure for it.

Operations

Operated in the AWS European Sovereign Cloud

The CAYADA compliance portal is being built on and operated in the AWS European Sovereign Cloud. This infrastructure is separate from the global AWS cloud and designed for the public sector, critical infrastructure and heavily regulated industries — with high requirements for data sovereignty, data residency and operational control in Europe.

Packages

Four tiers from entry level to enterprise

Which package fits your organisation is something we clarify together in a non-binding initial conversation.

Tier 01

Entry

Access to the knowledge base and initial templates.

Tier 02

Basic

Essentials for smaller organisations.

Tier 03

Professional

Extended scope for teams with several roles.

Tier 04

Enterprise

Individual configuration and integration.

CAYADA is a compliance and technology company, not a law firm. Advice provided under a DPO mandate falls within the scope of Art. 39 GDPR. Legal advice beyond that scope and legal representation are not part of the CAYADA offering.