Free tools · Free · 2 minutes

DPO in Mauritius: your roadmap to 1 January 2027

The June 2026 regulations require every Mauritian controller to appoint a certified data protection officer from among its own staff. The obligation takes effect on 1 January 2027, with no headcount threshold and no grace period. Tell us what is already done: the tool dates every remaining milestone and flags those already overdue. Everything is computed in your browser and nothing is sent without your consent. This is not legal advice.

Have you established that your organisation is a controller, and how many officers it must appoint?
Is the intended person chosen, an employee of the organisation, and reporting without a conflict of interest?
Is that person booked onto a recognised certification session?
Is your record of processing activities up to date and usable?
Have you listed your hosting arrangements and data transfers outside Mauritius, with their legal basis?
Has the certification been obtained and the evidence kept?
Has the designation been notified within the prescribed period?
Have the officer's contact details been published?

The companion article: DPO in Mauritius: a certified staff member by 1 January 2027