OneConsent TPGP · Third Party Risk Management
AD
Admin

AI Contract Compliance & Risk Assessment

Upload contracts, run AI-driven compliance checks, and remediate risks across every framework.

Contracts analyzed

6

+3 this week

Avg compliance score

75%

▲ 4 vs last mo

Open risks

30

8 critical

Pending reviewer approvals

3

SLA 48h

AI recommendations
Top remediations across portfolio
CriticalDPDP

No explicit prior consent for sub-processor changes

Add 30-day prior notice obligation with right to object for any sub-processor onboarding.

CriticalDPDP

Breach notification window not aligned with DPDP timelines

Replace 'within reasonable time' with 'without undue delay and in any case within 72 hours of becoming aware', aligned to DPDP rules.

HighDPDP

Cross-border transfer lacks DPDP notified-country safeguard

Restrict transfers to countries permitted under DPDP Sec. 16 and reference the Central Government's notified list.

MediumDPDP

Audit cadence limited to once every 24 months

Allow annual third-party audit and unlimited audits post-incident.

Framework coverage
Control library mapping
DPDP88%
Internal95%