Ga naar hoofdinhoud

Gegevensformaat

Het JSON-bestand bevat alles wat de organisatie bevat. Het ZIP-archief bevat dezelfde inhoud, verdeeld over spreadsheetbestanden, met de logo's van de partners als afbeeldingsbestanden.

De velden van elke entiteit, in de termen van de formulieren, staan in de sectie "Wat een … bevat" van haar pagina onder Componenten: Organisaties, Organisatorische eenheden, Verwerkingsactiviteiten, Partners, Contacten, Contracten.

JSON-bestandsformaat​

Eén gestructureerd bestand, met:

OrganisatieNamen, adres, contacten, kleur, logo, notities
TalenDe geconfigureerde talen en welke de standaardtaal is
PartnersElke partner, met zijn contacten
ContractenElk contract, met de partners en activiteiten die het koppelt
Eenheden en activiteitenDe naam van elke organisatorische eenheid en elke verwerkingsactiviteit, eenmaal per taal, met al hun velden en hun status actief/inactief
Kleuren en contacten van eenhedenDe kleur en de contacten van elke organisatorische eenheid — eenmaal, omdat ze in elke taal hetzelfde zijn
SjablonenUw eigen sjablonen

Leden en hun rollen maken er geen deel van uit: die horen bij uw account, niet bij het register. In grote lijnen ziet het bestand er zo uit:

{
"exportVersion": 1,
"exportedAt": "2026-05-18T00:00:00.000Z",
"organization": {
"licenseStart": 0,
"licenseEnd": 0,
"licenseCost": 0,
"shortName": "demo",
"isBlocked": false,
"isPublic": true,
"isDemo": true,
"highestOuId": 4,
"highestActivityId": 7,
"highestPartnerId": 7,
"highestContractId": 11,
"schemaVersion": 15,
"defaultActivityAttributes": {
"activityId": 0,
"activityName": "",
"role": "Controller",
"purposeShort": "",
"purposeLong": "",
"legalbasis": ["Consent"],
"legalbasisLong": "",
"legalbasisSpecial": ["ExplicitConsent"],
"dataCategories": ["Characteristics", "Identification"],
"datasubjectCategories": "",
"activityCategories": ["DataCollection", "DataStorage"],
"dataOrigin": "",
"timeLimit": "",
"profiling": false,
"communications": "",
"communicationsLong": "",
"controllers": [0],
"processors": [],
"transfers": false,
"transfersLong": "",
"securityLevel": "low",
"securityMeasuresLong": "",
"active": false,
"createdAt": 0,
"updatedAt": 0
},
"partners": [
{
"organizationId": 0,
"organizationName": "TEST",
"organizationNameLong": "Demo Organization",
"organizationColor": "#2563EB",
"organizationWebsite": "",
"organizationPostalAddress": {
"addressLine1": "Test Avenue",
"addressLine2": "Test Org Main Office",
"city": "Testville",
"stateProvince": "",
"postalCode": "00000",
"country": "LX"
},
"organizationLogo": null,
"organizationLogoVersion": null,
"organizationVatNumber": "",
"organizationNotes": "Self organization. This is the organization owning this ROPA.",
"organizationContacts": [
{
"contactId": 1,
"contactFirstname": "John",
"contactLastname": "Smith",
"contactRole": "DPO",
"contactEmails": [
{
"email": "dpo@test-organization.com",
"description": "DPO Office",
"isPrimary": true
}
],
"contactPhoneNumbers": [
{
"countryCode": "+1",
"phoneNumber": "5551234567",
"description": "Office",
"isPrimary": true
}
],
"contactNotes": "Data Protection Officer. Primary contact for GDPR compliance matters.",
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
}
],
"contractOrder": [],
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
},
{
"organizationId": 1,
"organizationName": "CloudStore",
"organizationNameLong": "CloudStore Solutions Inc.",
"organizationColor": "#0891B2",
"organizationWebsite": "https://www.cloudstore-demo.com",
"organizationPostalAddress": {
"addressLine1": "123 Tech Boulevard",
"addressLine2": "Suite 400",
"city": "San Francisco",
"stateProvince": "California",
"postalCode": "94105",
"country": "US"
},
"organizationLogo": null,
"organizationLogoVersion": null,
"organizationVatNumber": "",
"organizationNotes": "Cloud storage provider for document archiving and backup services. Primary data processor for file storage.",
"organizationContacts": [
{
"contactId": 1,
"contactFirstname": "Sarah",
"contactLastname": "Mitchell",
"contactRole": "DPO",
"contactEmails": [
{
"email": "sarah.mitchell@cloudstore-demo.com",
"description": "Work",
"isPrimary": true
},
{
"email": "dpo@cloudstore-demo.com",
"description": "DPO Office",
"isPrimary": false
}
],
"contactPhoneNumbers": [
{
"countryCode": "+1",
"phoneNumber": "4155551234",
"description": "Office",
"isPrimary": true
},
{
"countryCode": "+1",
"phoneNumber": "4155559876",
"description": "Mobile",
"isPrimary": false
}
],
"contactNotes": "Available Mon-Fri 9am-5pm PST. Preferred contact for data protection matters.",
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
},
{
"contactId": 2,
"contactFirstname": "James",
"contactLastname": "Rodriguez",
"contactRole": "Technical",
"contactEmails": [
{
"email": "james.rodriguez@cloudstore-demo.com",
"description": "Work",
"isPrimary": true
}
],
"contactPhoneNumbers": [
{
"countryCode": "+1",
"phoneNumber": "4155552345",
"description": "Office",
"isPrimary": true
}
],
"contactNotes": "Technical lead for API integration and data migration projects.",
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
},
{
"contactId": 3,
"contactFirstname": "Emily",
"contactLastname": "Chen",
"contactRole": "Support",
"contactEmails": [
{
"email": "emily.chen@cloudstore-demo.com",
"description": "Work",
"isPrimary": true
},
{
"email": "support@cloudstore-demo.com",
"description": "Support Team",
"isPrimary": false
}
],
"contactPhoneNumbers": [
{
"countryCode": "+1",
"phoneNumber": "4155553456",
"description": "Support Line",
"isPrimary": true
}
],
"contactNotes": "Customer support manager. Contact for service issues and incidents.",
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
}
],
"contractOrder": [1, 9],
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
}
],
"ropas": [
{
"locale": "en",
"isDefault": true
},
{
"locale": "de",
"isDefault": false
}
],
"contracts": [
{
"contractId": 1,
"contractName": "HR-SYS-2024",
"contractUrl": "https://example.com/contracts/hr-sys-2024",
"contractExpirationDate": "2025-12-31",
"contractDescription": "HR management system service agreement including payroll processing and training management",
"activityIds": [1],
"partnerIds": [1],
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
},
{
"contractId": 2,
"contractName": "DPA-BENEFITS-2024",
"contractUrl": "https://example.com/contracts/dpa-benefits",
"contractExpirationDate": "2026-06-30",
"contractDescription": "Data processing agreement for employee benefits administration and healthcare coordination",
"activityIds": [1],
"partnerIds": [5],
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
},
{
"contractId": 3,
"contractName": "OSH-2024",
"contractUrl": "https://example.com/contracts/osh-2024",
"contractExpirationDate": "2025-08-31",
"contractDescription": "Occupational safety and health surveillance service agreement with medical assessment provider",
"activityIds": [3],
"partnerIds": [2],
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
}
],
"ous": [
{
"ouId": 1,
"ouColor": "#C084FC",
"ouContacts": [
{
"contactId": 1,
"contactFirstname": "Laura",
"contactLastname": "Novak",
"contactRole": "HR Manager",
"contactEmails": [
{
"email": "hr@test-organization.com",
"description": "HR Office",
"isPrimary": true
}
],
"contactPhoneNumbers": [
{
"countryCode": "+1",
"phoneNumber": "5551230001",
"description": "Office",
"isPrimary": true
}
],
"contactNotes": "Owns the staff records and answers employees' data access requests.",
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
},
{
"contactId": 2,
"contactFirstname": "Peter",
"contactLastname": "Hall",
"contactRole": "Payroll Lead",
"contactEmails": [
{
"email": "payroll@test-organization.com",
"description": "Work",
"isPrimary": true
}
],
"contactPhoneNumbers": [],
"contactNotes": "",
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
}
]
},
{
"ouId": 2,
"ouColor": "#1c7958",
"ouContacts": []
}
],
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
},
"ropas": [
{
"orgId": "",
"orgShortName": "demo",
"locale": "en",
"ous": [
{
"ouName": "Human Resources",
"ouId": 1,
"activities": [
{
"activityId": 1,
"activityName": "Staff Management",
"purposeShort": "Staff management",
"purposeLong": "Management of training, payroll, promotion, and other aspects related to work life",
"legalbasis": ["Contract", "LegalObligation"],
"legalbasisLong": "",
"legalbasisSpecial": ["Employment", "Healthcare"],
"dataCategories": ["Identification"],
"datasubjectCategories": "Students; Other individuals related to the University; Former students",
"activityCategories": [
"DataCollection",
"DataGeneration",
"DataAccess"
],
"dataOrigin": "From the data subject or their legal representative; Reuse of data already held by the controller in other processing operations",
"timeLimit": "As long as necessary to fulfill the purpose for which they were collected and to determine possible responsibilities arising from the processing. Until consent is revoked.",
"profiling": false,
"communications": "-",
"communicationsLong": "-",
"controllers": [0],
"processors": [1, 5],
"transfers": true,
"transfersLong": "International transfers (outside the EEA) of personal data may be made to companies providing information society services, subject to the signing of contracts, and to other institutions with which data transfer agreements have been signed, in both cases respecting legality",
"securityLevel": "low",
"securityMeasuresLong": "Not required.",
"activityExpirationDate": "2099-12-31",
"forcedInactive": false,
"active": false,
"createdAt": 0,
"updatedAt": 0
}
]
},
{
"ouName": "Sales",
"ouId": 2,
"activities": [
{
"activityId": 4,
"activityName": "Customer Management",
"purposeShort": "Customer management",
"purposeLong": "Order management, logistics, billing, and collections management",
"legalbasis": ["Contract"],
"legalbasisLong": "",
"legalbasisSpecial": [],
"dataCategories": ["Identification"],
"datasubjectCategories": "Customers",
"activityCategories": [
"DataCollection",
"DataGeneration",
"DataAccess"
],
"dataOrigin": "From other public administrations or private entities; From the data subject or their legal representative",
"timeLimit": "As long as necessary to fulfill the purpose for which they were collected and to determine possible responsibilities arising from the processing.",
"profiling": true,
"communications": "",
"communicationsLong": "",
"controllers": [0],
"processors": [4],
"transfers": false,
"transfersLong": "Not made",
"securityLevel": "medium",
"securityMeasuresLong": "Not required.",
"activityExpirationDate": "2099-12-31",
"forcedInactive": false,
"active": true,
"createdAt": 0,
"updatedAt": 0
}
]
}
],
"createdAt": "2026-05-18T00:00:00.000Z",
"updatedAt": "2026-05-18T00:00:00.000Z"
}
],
"templates": []
}

ZIP-gegevensbestandsformaat​

Dezelfde inhoud, verdeeld over CSV-bestanden: één per soort record — de organisatie, haar talen, partners, contacten, contracten en organisatorische eenheden — en één per taal voor de activiteiten. Elk record is één rij van één bestand, en de logo's van de partners zijn afbeeldingsbestanden in een map logos. Bedoeld om in een spreadsheet te openen en te bewerken, niet om door een script of een AI-assistent gelezen te worden.

Voor een organisatie met de korte naam demo bevat het archief:

BestandInhoud
demo-organization.csvDe organisatie zelf — één rij
demo-locales.csvEén rij per geconfigureerde taal
demo-partners.csvEén rij per partner
demo-contacts.csvEén rij per contact, van een partner of van een organisatorische eenheid
demo-contracts.csvEén rij per contract
demo-ous.csvEén rij per organisatorische eenheid, met of zonder activiteiten — haar kleur en haar naam in elke taal
demo-ropa-en.csv, demo-ropa-de.csv, …Eén rij per verwerkingsactiviteit, één bestand per taal
logos/partner-0.png, …Het logo van elke partner, als afbeeldingsbestand — alleen voor partners die er een hebben
demo-templates.jsonUw eigen sjablonen — alleen aanwezig als u er heeft

Voorbeeld downloaden: demo-export.zip, een volledige export van de demo-organisatie.

Alle bestanden volgen dezelfde conventies:

  • UTF-8, kommagescheiden, met de kolomnamen in de eerste rij. Een cel met een komma, aanhalingsteken of regeleinde wordt tussen dubbele aanhalingstekens gezet, waarbij binnenste aanhalingstekens worden verdubbeld — spreadsheets doen dit voor u.
  • Ja/nee-velden bevatten true of false.
  • Meerwaardige velden bevatten hun waarden gescheiden door |, bijv. Contract|LegalObligation.
  • Elke cel bevat één waarde. De e-mailadressen en telefoonnummers van een contact nemen genummerde kolommen in — email1 … email5, phoneNumber1 … phoneNumber5 —, omdat een contact er van elk hoogstens vijf heeft; ongebruikte blijven leeg. De enige uitzondering zijn de standaardattributen van de organisatie (defaultActivityAttributes), die als JSON-tekst in één cel worden opgeslagen.
  • Bestanden verwijzen naar elkaar met nummers: controllers, processors en partnerIds bevatten organizationIds van partners, activityIds bevat activityIds, ouId koppelt een activiteit aan haar organisatorische eenheid, en parentType met parentId koppelen een contact aan zijn partner (partner, een organizationId) of eenheid (ou, een ouId).
  • formatVersion, de eerste kolom van het organisatiebestand, geeft aan welke indeling het archief heeft. Archieven die vóór deze indeling zijn geëxporteerd, kunnen nog steeds worden geïmporteerd.

demo-organization.csv​

De instellingen van de organisatie zelf: de formatVersion van het archief, de korte naam, de tellers die nieuwe eenheden, activiteiten, partners en contracten nummeren, en de standaardwaarden voor een nieuwe activiteit (defaultActivityAttributes, als JSON). Dit bestand hoeft u zelden te bewerken.

formatVersion,shortName,licenseStart,licenseEnd,licenseCost,isBlocked,isPublic,isDemo,highestOuId,highestActivityId,highestPartnerId,highestContractId,schemaVersion,defaultActivityAttributes
2,demo,0,0,0,false,true,true,4,7,7,11,15,"{""activityId"":0,""activityName"":"""",""role"":""Controller"",""purposeShort"":"""",""purposeLong"":"""",""legalbasis"":[""Consent""],""legalbasisLong"":"""",""legalbasisSpecial"":[""ExplicitConsent""],""dataCategories"":[""Characteristics"",""Identification""],""datasubjectCategories"":"""",""activityCategories"":[""DataCollection"",""DataStorage""],""dataOrigin"":"""",""timeLimit"":"""",""profiling"":false,""communications"":"""",""communicationsLong"":"""",""controllers"":[0],""processors"":[],""transfers"":false,""transfersLong"":"""",""securityLevel"":""low"",""securityMeasuresLong"":"""",""active"":false,""createdAt"":0,""updatedAt"":0}"

demo-locales.csv​

De geconfigureerde talen en welke de standaard is. Elke hier vermelde taal heeft een bijbehorend demo-ropa-<locale>.csv.

locale,isDefault
en,true
de,false

demo-partners.csv​

Eén rij per partner; de organisatie zelf is partner 0. Het postadres is over eigen kolommen verdeeld, organizationLogo noemt het logobestand van de partner in de map logos, en contractOrder is de weergavevolgorde van de contracten van de partner. De contacten staan in demo-contacts.csv.

organizationId,organizationName,organizationNameLong,organizationColor,organizationWebsite,organizationVatNumber,addressLine1,addressLine2,city,stateProvince,postalCode,country,organizationLogo,organizationNotes,contractOrder
0,TEST,Demo Organization,#2563EB,,,Test Avenue,Test Org Main Office,Testville,,00000,LX,,Self organization. This is the organization owning this ROPA.,
1,CloudStore,CloudStore Solutions Inc.,#0891B2,https://www.cloudstore-demo.com,,123 Tech Boulevard,Suite 400,San Francisco,California,94105,US,,Cloud storage provider for document archiving and backup services. Primary data processor for file storage.,1|9

demo-contacts.csv​

Eén rij per contact. parentType en parentId geven aan van wie het contact is — partner en een organizationId, of ou en een ouId — en de rijen houden de volgorde van elke lijst aan, zodat het eerste contact van een partner of eenheid als eerste komt. Een e-mailadres neemt drie kolommen in (email, emailDescription, emailIsPrimary) en een telefoonnummer vier (countryCode, phoneNumber, phoneDescription, phoneIsPrimary), elk genummerd van 1 tot 5.

parentType,parentId,contactId,contactFirstname,contactLastname,contactRole,contactNotes,email1,emailDescription1,emailIsPrimary1,email2,emailDescription2,emailIsPrimary2,email3,emailDescription3,emailIsPrimary3,email4,emailDescription4,emailIsPrimary4,email5,emailDescription5,emailIsPrimary5,countryCode1,phoneNumber1,phoneDescription1,phoneIsPrimary1,countryCode2,phoneNumber2,phoneDescription2,phoneIsPrimary2,countryCode3,phoneNumber3,phoneDescription3,phoneIsPrimary3,countryCode4,phoneNumber4,phoneDescription4,phoneIsPrimary4,countryCode5,phoneNumber5,phoneDescription5,phoneIsPrimary5
partner,0,1,John,Smith,DPO,Data Protection Officer. Primary contact for GDPR compliance matters.,dpo@test-organization.com,DPO Office,true,,,,,,,,,,,,,+1,5551234567,Office,true,,,,,,,,,,,,,,,,
partner,1,1,Sarah,Mitchell,DPO,Available Mon-Fri 9am-5pm PST. Preferred contact for data protection matters.,sarah.mitchell@cloudstore-demo.com,Work,true,dpo@cloudstore-demo.com,DPO Office,false,,,,,,,,,,+1,4155551234,Office,true,+1,4155559876,Mobile,false,,,,,,,,,,,,
partner,1,2,James,Rodriguez,Technical,Technical lead for API integration and data migration projects.,james.rodriguez@cloudstore-demo.com,Work,true,,,,,,,,,,,,,+1,4155552345,Office,true,,,,,,,,,,,,,,,,
partner,1,3,Emily,Chen,Support,Customer support manager. Contact for service issues and incidents.,emily.chen@cloudstore-demo.com,Work,true,support@cloudstore-demo.com,Support Team,false,,,,,,,,,,+1,4155553456,Support Line,true,,,,,,,,,,,,,,,,
ou,1,1,Laura,Novak,HR Manager,Owns the staff records and answers employees' data access requests.,hr@test-organization.com,HR Office,true,,,,,,,,,,,,,+1,5551230001,Office,true,,,,,,,,,,,,,,,,
ou,1,2,Peter,Hall,Payroll Lead,,payroll@test-organization.com,Work,true,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,

demo-contracts.csv​

Eén rij per contract, dat activiteiten en partners koppelt via hun id's.

contractId,contractName,contractUrl,contractExpirationDate,contractDescription,activityIds,partnerIds
1,HR-SYS-2024,https://example.com/contracts/hr-sys-2024,2025-12-31,HR management system service agreement including payroll processing and training management,1,1
2,DPA-BENEFITS-2024,https://example.com/contracts/dpa-benefits,2026-06-30,Data processing agreement for employee benefits administration and healthcare coordination,1,5
3,OSH-2024,https://example.com/contracts/osh-2024,2025-08-31,Occupational safety and health surveillance service agreement with medical assessment provider,3,2

demo-ous.csv​

Eén rij per organisatorische eenheid, ook voor eenheden die nog geen activiteiten hebben: ouId, de kleur van de eenheid en per taal een kolom name_<locale>, naast elkaar. Dit is het enige bestand met de naam van een eenheid; haar contacten staan in demo-contacts.csv.

ouId,ouColor,name_en,name_de
1,#C084FC,Human Resources,Personalwesen
2,#1c7958,Sales,Vertrieb

demo-ropa-en.csv​

Eén rij per activiteit. De eerste twee kolommen zijn de taal en ouId, het nummer van de organisatorische eenheid van de activiteit (waarvan de naam in demo-ous.csv staat); de rest zijn de velden van de activiteit zoals ze in het formulier verschijnen. De meerwaardige zijn legalbasis, legalbasisSpecial, dataCategories, activityCategories, controllers en processors.

locale,ouId,activityId,activityName,purposeShort,purposeLong,legalbasis,legalbasisLong,legalbasisSpecial,dataCategories,datasubjectCategories,activityCategories,dataOrigin,timeLimit,profiling,communications,communicationsLong,controllers,processors,transfers,transfersLong,securityLevel,securityMeasuresLong,active,activityExpirationDate,forcedInactive,createdAt,updatedAt
en,1,1,Staff Management,Staff management,"Management of training, payroll, promotion, and other aspects related to work life",Contract|LegalObligation,,Employment|Healthcare,Identification,Students; Other individuals related to the University; Former students,DataCollection|DataGeneration|DataAccess,From the data subject or their legal representative; Reuse of data already held by the controller in other processing operations,As long as necessary to fulfill the purpose for which they were collected and to determine possible responsibilities arising from the processing. Until consent is revoked.,false,-,-,0,1|5,true,"International transfers (outside the EEA) of personal data may be made to companies providing information society services, subject to the signing of contracts, and to other institutions with which data transfer agreements have been signed, in both cases respecting legality",low,Not required.,false,2099-12-31,false,0,0
en,2,4,Customer Management,Customer management,"Order management, logistics, billing, and collections management",Contract,,,Identification,Customers,DataCollection|DataGeneration|DataAccess,From other public administrations or private entities; From the data subject or their legal representative,As long as necessary to fulfill the purpose for which they were collected and to determine possible responsibilities arising from the processing.,true,,,0,4,false,Not made,medium,Not required.,true,2099-12-31,false,0,0

De voorbeelden komen uit de demo-organisatie, beperkt tot twee partners, drie contracten, twee talen en twee activiteiten.