Savira - Making Compliance Easy

Accounting Privacy Risk Scorecard

A 10-minute self-assessment for Australian accounting practices.

Since 1 July 2026, accounting firms providing designated services under the AML/CTF Act have been reporting entities, and the small business exemption under the Privacy Act no longer applies to them. This scorecard helps you identify your privacy compliance gaps across governance, client onboarding, data handling, marketing and security.

0 of 30 answeredScore: 0/60

Governance and accountability

Questions 1 to 6 of 30

1A partner or senior staff member is formally responsible for privacy compliance.
2Privacy risk is reported to partners or directors at least annually.
3There is a documented privacy management plan or the firm has begun developing one.
4Staff receive privacy training at least once every 12 months.
5Privacy obligations are included in onboarding for new employees and contractors.
6There is a documented data breach response procedure aligned to the Notifiable Data Breaches scheme.

This assessment provides general information only and does not constitute legal advice.

Want this fixed rather than just listed?

Savira handles the consent side of this for you - a banner that blocks tags until people agree, a record of every consent so you can prove it, and an evidence pack you can hand to anyone who asks. Free plan, about 15 minutes to set up.