Logo Lanfrica
  • Accueil
  • Atlas
  • Analyses
  • Documentation
  • Sign in

© 2026 Lanfrica. Tous droits réservés. Tous les droits d'auteur des ressources affichées sur le site Web Lanfrica appartiennent aux détenteurs de droits d'auteur d'origine, sauf indication contraire explicite.

Emma02179/NDPR-Compliance-Self-Assessment

Domaine:

digital infrastructure

Type de record:

tools
Créateur:
Emm
Hôte:
Browser-based tool that scores an organisation's compliance against Nigeria's NDPR across 18 controls, with a gap report and remediation guidance. # NDPR Compliance Self-Assessment Tool A lightweight, browser-based tool that helps organisations evaluate their compliance posture against the **Nigeria Data Protection Regulation (NDPR), 2019** — built to bridge the gap between regulatory text and practical, auditable controls. Live demo · emma02179.github.io ## Problem Many small and mid-sized Nigerian organisations lack dedicated compliance staff, leaving them exposed to NDPR violations — regulatory action from NITDA, fines, and reputational damage from data breaches they weren't prepared to handle. ## Approach I broke NDPR's core obligations down into **18 assessable controls** across 6 articles: | Article | Focus | |---|---| | Art. 2.2 | Lawful Basis & Consent | | Art. 3.1 | Data Subject Rights | | Art. 2.1 | Security Measures | | Art. 2.10 | Breach Notification | | Art. 2.12 | Third-Party & Data Sharing | | Art. 4.1 | Governance & Accountability | Each control is scored **Compliant / Partial / Non-compliant**. The tool generates a weighted overall score, a per-article breakdown, and a prioritised remediation list for every gap — similar in structure to a junior analyst's gap-analysis worksheet, just self-serve. ## Tech stack Vanilla HTML, CSS, and JavaScript — no build step, no dependencies, deployable directly to GitHub Pages. ## Running it locally ```bash git emma02179.github.io cd ndpr-assessment ``` Then just open `index.html` in a browser, or serve it locally: ```bash npx serve . ``` ## Key learning Translating regulatory language into measurable, auditable controls — the same exercise GRC analysts run daily when mapping frameworks like ISO 27001, NIST CSF, or NDPR to an organisation's actual environment. Writing the remediation text for each gap also forced me to think about *practical* fixes (e.g. tying the "security measures" gaps back to real endpoint protection work like ESET deployment) rather than jus …

Visit

github.com