Data Breach Response Checklist
An interactive checklist for responding to a data breach — contain, assess, notify, remediate, and review — with progress saved locally. Runs entirely in your browser.
🔒 This tool runs entirely in your browser. Your files are never uploaded to a server.
Saved in your browser's local storage — nothing is uploaded, and this is a general guide, not legal advice for your specific breach or jurisdiction.
How it works
- Work through the five phases: Contain, Assess, Notify, Remediate, Review.
- Check off steps as your team completes them — progress is saved locally.
- Reset the checklist to start fresh for a new incident.
FAQ
What order should I follow?
Contain first — stopping ongoing access matters more than anything else in the first hours. Assess and notify follow, since notification deadlines (like GDPR's 72-hour window) often start ticking from when you become aware of the breach, not when you finish investigating it.
Is this legal advice?
No — notification requirements vary significantly by jurisdiction, industry, and the type of data involved. This is a general-purpose starting checklist; consult legal counsel for your specific situation and applicable regulations.
Where is my progress saved?
In your browser's local storage, on your device only — it persists between visits on the same browser but isn't backed up or synced anywhere.
Is any data uploaded when I check items off?
No — everything stays in your browser. Nothing about your incident or your checklist progress is sent to a server.
How we compare
| Feature | Online Tool Store | PDF incident response templates | Enterprise IR platforms |
|---|---|---|---|
| Trackable progress with no sign-up | ✓ | Static, no progress tracking | Requires a paid platform |
| Immediately usable, no setup | ✓ | ✓ | Onboarding required |
For a small team without a dedicated incident response platform, this gives structure fast when time matters most.