File your Compliance Audit Return without the annual scramble
If you process the personal data of more than 2,000 people you are a data controller of major importance, and the annual return is not optional — it is filed with the NDPC through a licensed DPCO. Izini keeps your policies, consent logs, RoPA entries and risk decisions organised as you go, so filing is an export rather than six weeks of archaeology.
DPO Designation & Statutory Register
A DCPMI must have a designated Data Protection Officer, and must be able to evidence it. The register holds the board appointment, the NDPC registration and the statutory deadlines in one place.
- Board appointment resolution and effective date on file
- NDPC registration number held against the organisation
- Statutory SLAs and the filing deadline tracked, not remembered
DPO Accreditation & Competency (ACA)
It is not enough to name a DPO — Schedule 3 asks whether they are actually qualified. The ACA workspace keeps the certifications, CPD and accreditation standing that answer that question.
- Privacy certifications with issuing body, licence number and expiry tracked
- Annual CPD points accumulated across masterclasses, webinars and accredited courses
- Schedule 3 competency rating maintained year-round, not assembled at filing time
Compliance Audit Workbench
A live view of how ready you actually are, mapped to the sections of the Compliance Audit Return, with the gaps called out while there is still time to close them.
- Readiness scored per CAR section rather than as a single vague percentage
- Evidence linked directly from the module that produced it
- Drift detection, so a control that lapses does not stay green
CAR Master Evidence Pack Exporter
Assembles every artefact your DPCO or the NDPC will ask for into a single manifest-indexed archive, so nothing is missing and nothing has to be chased.
- One archive containing policies, consent evidence, RoPA, DSAR cases and risk records
- Manifest index so a reviewer can navigate the pack without your help
- Regenerated on demand, always reflecting current state
Statutory Regulatory Fee & Penalty Calculator
Works out what you actually owe under Schedule 10 — CAR fees, DCPMI, late surcharges — and produces the Remita reference so payment is not the thing that makes you late.
- Fee calculation by data controller tier and filing status
- Late surcharge modelling, so the cost of delay is visible
- Remita RRR generation for payment
Explore the rest of the platform
Consent management built for Nigerian regulation
Banner, cookie scanning, mobile SDKs and an evidentiary consent register.
Data Subject RightsDSAR handling and grievances, on the statutory clock
A DSAR register under section 34 and a SNAG grievance desk under GAID Schedule 9.
Governance & RiskRoPA, DPIAs and a risk register the regulator will recognise
Records of processing, impact assessments, vulnerability indexes and a 5×5 risk register.
Third-Party RiskYour processors are your exposure
Vendor due diligence under §29, processor DPAs and cross-border transfer assessments.
WorkforceThe obligations that point inward, not at your customers
Staff training under §24, employee privacy notices and the Basic Privacy Checklist.
For PartnersSee your whole client book in one place
Client portfolio, licence renewals and usage for channel partners and resellers.
DevelopersA compliance API, not just a dashboard
DSAR API, sandbox, integration blueprints and signed webhooks.
Incident ResponseThe 72-hour clock starts the moment you know
Breach assessment, NDPC notification and remediation through to root cause.
See it against your own compliance gaps.
We'll walk you through the modules that matter for how your organisation actually processes personal data — using your own site, not a canned demo.
- A 30-minute walkthrough, no slides
- A live cookie scan of your website, yours to keep
- Straight answers on scope, timelines and pricing