Privacy Tools
Privacy Tools is a Brazilian SaaS provider of modular privacy governance software for large enterprises and government organizations, helping them comply with LGPD, GDPR, and emerging AI regulations through data mapping, DSAR, consent, and AI-powered compliance automation.
- Company typePrivate
- Founded2022
- HeadquartersPorto Alegre, Brazil
- Headcount51–100
- GTM typeB2B
- OfferingSoftware
What Privacy Tools does
Privacy Tools is a Brazilian SaaS provider of modular privacy governance software headquartered in Porto Alegre, Rio Grande do Sul. Founded in 2019 and accelerated by OBr.global, the company targets large enterprises and public sector organizations that need to operationalize Brazil's Lei Geral de Proteção de Dados (LGPD), as well as GDPR and emerging AI regulations. The platform is organized into two module suites — Privacy Governance (Cookie Management, Consent Management, Data Mapping/ROPA, Data Discovery, DSAR, Training) and Security & Compliance (Incident Management, GRC Risk Management, ESG, Diagnostics, AI Governance) — augmented by cross-cutting features including PrIA (a generative AI assistant), Business Intelligence, Privacy Portal, Third-Party Risk Management, Workflow automation, Open Finance, and Audit Management. The underlying technology supports 18+ pre-built integrations (Oracle, MySQL, MongoDB, Salesforce, Azure, AWS, Google, GitHub, Slack, and others), an OAuth 2.0 API, and both SaaS and on-premise deployment. PrIA leverages generative AI to automate DSAR response drafting, risk identification, and ESG project structuring, while the Data Discovery module applies intelligent detection models to identify sensitive personal data in structured and unstructured sources.
The company operates a direct enterprise sales motion with hands-on implementation support, marketing itself through a robust content ecosystem (blog, e-books, Privacy Leaders podcast, WhatsApp Data Protection Club community, bi-weekly newsletter) and participating in industry events such as the IAPP Global Summit. Pricing is quote-based and modular, with annual subscriptions varying by modules contracted, organizational size, and deployment type (SaaS vs on-premise). Customers include major Brazilian enterprises and government entities such as Rede D'Or, Copel, Eletrobras, AFIP, Grupo Bom Jesus, Mills, Banese, BRB Card, Usiminas, Eurofarma, FIEMG, Petros, Americanas, and Unimed, spanning healthcare, energy/utilities, financial services, retail, manufacturing, and public sector verticals. Total disclosed funding is approximately R$2 million from a February 2022 seed round led by Bossanova Investimentos and Domo Invest, and the company now employs 51-100 people under CEO Aline Deparis, with international expansion signaled through English and Spanish website localization.
Privacy Tools firmographics
Firmographics- Name
- Privacy Tools
- Legal name
- Privacy Tools
- Website
- https://privacytools.com.br
- Company type
- Private
- Founded year
- 2022
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- Privacy Tools is a Brazilian SaaS provider of modular privacy governance software for large enterprises and government organizations, helping them comply with LGPD, GDPR, and emerging AI regulations through data mapping, DSAR, consent, and AI-powered compliance automation.
- Ownership category
- akta.pro rank
Privacy Tools industry classification
Industry- Product category
- Privacy Governance Software
- NAICS
- Software Publishers (513210), Software Publishers (51321)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370), Services-Prepackaged Software (7372)
- akta.pro primary industry
- Privacy Management (Consent, DSAR, RoPA) (HDADAFAH)
- akta.pro secondary industries
- Data Privacy, Consent & Compliance Management (HDAEADAG), Privacy Governance & Consent Management (HDADAIAI), AI Privacy Engineering & Data Governance (PII, consent, retention) (HDAAAKAB), Responsible AI, Security & Privacy Platforms (Safety, Guardrails, PII) (HDAEANAG)
Keywords
Where Privacy Tools is headquartered
LocationHeadquarters
- HQ city
- Porto Alegre
- HQ country
- Brazil
- HQ region
- Latin America
Offices1 record
Markets served
Privacy Tools business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- SaaS Platform Subscription: Modular SaaS platform subscription model where customers contract specific modules based on their needs. Includes hands-on implementation support and ongoing technical assistance. The platform is offered as SaaS or On-Premise deployment options.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Modular platform with modules contracted based on organizational needs |
Go-to-market motion1 record
Distribution channels2 records
Marketing channels7 records
Privacy Tools product offering
Product offeringCore offering
Privacy Tools sells a modular, integrated SaaS-based privacy governance platform that helps organizations achieve and maintain compliance with Brazil's LGPD, GDPR, the EU AI Act, ISO 27001, ISO/IEC 42001, and related frameworks. The platform is organized into Privacy Governance modules (Cookie Management, Consent Management, Data Mapping, Data Discovery, DSAR, Training) and Security & Compliance modules (Incident Management, GRC Risk, ESG, Diagnoses, AI Governance), augmented by the PrIA generative AI assistant, BI dashboards, ROPA, Third-Party Risk Management, Workflow automation, Open Finance, and Audit Management. It is sold via SaaS or on-premise deployment to enterprise and government customers.
Product overview
Privacy Tools is a modular, integrated privacy governance platform designed for organizations operating under LGPD, GDPR, and international frameworks. The platform consists of a core set of modules organized under two main categories: Privacy Governance (Cookie Management & Policies, Consent Management, Data Mapping, Data Discovery, Data Subject Request Management, and Training) and Security & Compliance (Incident Management, GRC Risk Management, ESG Management, Diagnoses and Assessments, and AI Governance). The platform is augmented by featured features including PrIA (generative AI assistant), Business Intelligence, Privacy Portal, ROPA, Third-Party Risk Management, Workflow automation, Open Finance, and Audit Management. Additional solutions target Enterprise and Government segments. The architecture is designed to scale from initial compliance needs to continuous governance maturity, with SaaS or on-premise deployment options and hands-on implementation support.
Differentiator
Problem solved
Functional benefit
Products and services
- Gestão de Cookies & Políticas (Cookie Management & Policies) Monitors and identifies cookies and trackers across websites, creates compliant consent banners with brand identity, manages automatic blocking of cookies until consent, and handles creation, versioning, and publication of privacy policies with full audit trails. Used by privacy and legal teams at organizations needing website LGPD/GDPR compliance.
- Gestão de Consentimentos (Consent Management) Automates collection, registration, and renewal of consent with security, traceability, and full API integration. Includes customizable consent forms, QR codes for physical/digital environments, centralized logs, renewal campaigns, and dashboards for compliance auditing. Targeted at organizations needing centralized consent tracking across channels.
- Data Mapping Maps and manages the lifecycle of personal data while registering processing activities (ROPA) with automation and compliance. Supports spreadsheet import, customizable workflows, DPIA report generation, risk management, supplier assessments, and integration with other platform modules. Used by DPOs and compliance teams for personal data processing records.
- Data Discovery Discovers, monitors, and manages personal data at scale through automated scanning of databases, servers, and documents (structured and unstructured). Identifies sensitive data types (CPF, RG, names, emails) using intelligent detection models, with optional SaaS or on-premise deployment. Includes Data Redaction functionality for anonymizing sensitive information.
- Gestão de Pedidos de Titulares (DSAR Management) Automates, controls, and proves data subject request fulfillment with security, traceability, and intelligence. Features customizable forms, requester authentication, configurable workflows, flexible response modes (manual to automatic), template-based communications, and integration with Data Discovery for automated data location and deletion. For organizations required to handle LGPD/GDPR data subject requests.
- Capacitação (Privacy Training) Continuous management of privacy and data protection training connecting teams to governance objectives. Features assignable training tracks by area or role, real-time progress tracking, visual reports with completion metrics, bulk user import, customizable course catalogs with external video links, and individual learning journeys with logs.
- Gestão de Incidentes (Incident Management) Organizes, responds to, and proves incident handling with traceability, agility, and compliance with privacy regulations. Provides structured incident registration, data impact mapping, timeline tracking, customizable dashboards, ANPD notification generation, and audit-ready reports.
- GRC – Gestão de Riscos (Risk Management) Maps, evaluates, monitors, and treats risks based on ISO 31000 with direct integration to processing activities, customizable workflows, and complete traceability. Features structured risk creation, approval trail with change logs, customizable risk matrix, bulk import via spreadsheet, action plans with status tracking, and automated task emails by risk score.
- Gestão de ESG Structures and tracks ESG programs with governance, metrics, and clear results. Manages projects, initiatives, tasks, and indicators based on international frameworks (SASB, GRI, WEF, TCDF). Features portfolio management, initiative tracking, task assignment, dashboard metrics, and evidence generation for stakeholders and audits.
- Diagnósticos e Avaliações (Diagnoses and Assessments) Evaluates suppliers, users, areas, and entities with precision using customizable assessment models and scoring logic. Supports framework-based templates (ISO 27000, DPIA), bulk application, maturity level calculation, filtering, and detailed results dashboards for due diligence and compliance tracking.
- Governança de IA (AI Governance) Maps, controls, and documents AI usage in the organization based on regulatory requirements and governance best practices. Registers AI projects by area, purpose, stage, and technology; identifies personal data and risks; associates regulations and controls; tracks action plans; generates audit-ready reports aligned with AI Act, ISO/IEC 42001, and OECD frameworks.
- PrIA (Privacy AI Assistant) Privacy Tools' proprietary generative AI assistant that automates repetitive privacy tasks, accelerates LGPD compliance, and optimizes decisions. Integrated across key modules, PrIA generates treatment records from diagnostics, suggests DSAR responses, identifies and categorizes risks, and aids in structuring privacy, GRC, and ESG projects.
- Business Intelligence (BI) Creates reports, dashboards, and charts using operational data directly within the Privacy Tools platform. Enables cross-module analysis, customizable reports, visual dashboards, dynamic charts, advanced filters, and secure data export for presentations to leadership, boards, investors, and auditors.
- Portal da Privacidade (Privacy Portal) Provides a centralized, secure, and brand-customized channel for data subjects to exercise rights, review consents, and access company privacy information. Integrates with DSAR and Consent Management modules, serving as the single entry point for requests, preferences, and policy transparency.
- ROPA (Record of Processing Activities) Manages the Record of Processing Activities, a regulatory requirement under LGPD and GDPR, with automation, traceability, and audit readiness. Supports spreadsheet model import, legacy file conversion, bulk updates, field customization, and version history within the Data Mapping module.
- Gestão de Riscos de Terceiros (Third-Party Risk Management) Structures a continuous third-party risk management process based on objective criteria, integrated diagnostics, and complete visibility for decision-making. Registers suppliers and partners, applies privacy/security/compliance assessments, classifies risks by category and impact, and creates action plans with full audit trails.
- Workflow Enables automated workflow creation based on predefined triggers and conditions across platform modules. Reduces operational failures, accelerates deliveries, and strengthens traceability by connecting actions between modules (Data Mapping, Consent, Incidents, Policies, Audits) and external systems via API integrations.
- Open Finance Manages data sharing consents for financial institutions in compliance with Banco Central's Open Finance rules. Centralizes consent management for individuals and legal entities, tracks consent status in real time, and integrates with the Privacy Portal and Banco Central APIs via secure OAuth 2.0 authentication.
- Gestão de Auditorias (Audit Management) Plans, executes, and monitors internal or external audits based on standards such as LGPD, GDPR, ISO, and custom frameworks. Features customizable audit cycles, ready-made templates, result documentation, auditor profiles with competency-based assignments, approval workflows with full traceability, and non-conformity tracking with corrective action plans.
- Enterprise Solution Privacy Tools' enterprise-tier offering for large organizations requiring scalable privacy governance, audit capabilities, and continuous LGPD/GDPR compliance. Features API integration, advanced dashboards, SaaS or on-premise deployment, multi-site/multi-language support, advanced permissions, encryption, immutable logs, and hands-on implementation support.
- Government Solution (Solução para Governo) Privacy Tools' specialized offering for public-sector organizations to structure or scale privacy governance with efficiency, traceability, and security. Supports multiple departments/units, audit trails, role-based access, SaaS or on-premise deployment, customizable portals with institutional branding, and dashboards for accountability and transparency.
Quantifiable outcome
- Quick deployment enabling main modules to be available and operational in a short timeframe
- +1 more outcomes
Companies that use Privacy Tools
Customer profileNamed customers14 records
Segments3 records
Ideal customer profiles3 records
Privacy Tools technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration21 records
AI capability4 records
Feature7 records
Privacy Tools partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- Obr.globalcoreAccelerator program that supported Privacy Tools' early development. The company was accelerated by Obr.global, which provides mentorship, resources, and support for startups in the compliance and governance space.
Scale indicators1 record
Recent moves6 records
Expansion highlights6 records
Privacy Tools competitors and assessment
Company assessmentEmerging players
- K2view: Data privacy and data product platform covering DSAR, consent and entity-based data management, with comparable enterprise integration and data discovery capabilities.
- Cookiebot: Specialist cookie consent and scanner solution widely used by mid-market websites. Comparable to Privacy Tools' Gestão de Cookies & Políticas module, though narrower in scope.
Broad incumbents
- OneTrust: Largest privacy, security and data governance SaaS platform globally, offering consent, DSAR, ROPA, GRC and AI governance modules. Direct competitor for enterprise and government privacy programs in Brazil, but at vastly greater scale and funding.
- BigID: Data intelligence platform with strong data discovery, classification and privacy capabilities. Overlaps with Privacy Tools' Data Discovery, data mapping and redaction modules for enterprise customers.
- Collibra: Enterprise data intelligence and governance platform that overlaps with Privacy Tools on data catalog, governance, consent and privacy stewardship use cases for large organizations.
Direct peers
- TrustArc: Specialist privacy compliance SaaS offering consent management, DSAR, ROPA, vendor risk and assessments. Closely comparable to Privacy Tools on module structure and target DPO/compliance buyer.
- Securiti.ai: AI-driven data privacy and security platform covering consent, DSAR, data mapping, AI governance and DSPM. Closely aligned with Privacy Tools' generative AI (PrIA) and AI governance positioning.
- DataGrail: Privacy management platform focused on DSAR automation, data mapping and consent, with deep integrations to enterprise SaaS systems. Highly comparable product surface area to Privacy Tools' core privacy modules.
- Transcend: Privacy engineering platform for consent, DSAR, data mapping and AI governance, with a developer-oriented API and integrations approach similar to Privacy Tools' workflow and API layer.
- Didomi: Consent and preference management platform with strong cookie consent and DSAR capabilities. Closely comparable on the Cookie Management and Consent Management modules.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Privacy Tools social profiles
Digital presencePrivacy Tools financial estimates
Financial estimateRevenue estimate
Valuation estimate
Privacy Tools leadership team
Management profileNumber of profiles
Profiles1 record
Privacy Tools funding detail
Funding detailFunding overview
Funding rounds4 records
Investors4 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Privacy Tools M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Privacy Tools
What does Privacy Tools do?
Privacy Tools sells a modular, integrated SaaS-based privacy governance platform that helps organizations achieve and maintain compliance with Brazil's LGPD, GDPR, the EU AI Act, ISO 27001, ISO/IEC 42001, and related frameworks. The platform is organized into Privacy Governance modules (Cookie Management, Consent Management, Data Mapping, Data Discovery, DSAR, Training) and Security & Compliance modules (Incident Management, GRC Risk, ESG, Diagnoses, AI Governance), augmented by the PrIA generative AI assistant, BI dashboards, ROPA, Third-Party Risk Management, Workflow automation, Open Finance, and Audit Management. It is sold via SaaS or on-premise deployment to enterprise and government customers.
When was Privacy Tools founded?
Privacy Tools was founded in 2022. It employs 51 to 100 people.
Where is Privacy Tools based?
Privacy Tools is headquartered in Porto Alegre, Brazil, in the Latin America region.
How does Privacy Tools make money?
One revenue line is on record: saaS Platform Subscription.
Who are Privacy Tools's main competitors?
Emerging players on record are K2view and Cookiebot. Broad incumbents are OneTrust, BigID and Collibra. Direct peers are TrustArc, Securiti.ai, DataGrail, Transcend and Didomi.
Does Privacy Tools have an API?
Yes. Privacy Tools offers a robust API with OAuth 2.0 authentication for developers to automate data mapping and integrate with external systems. The API supports real-time capture and updating of consents, and enables custom integrations with any system using compatible authentication patterns and data structures. The platform also provides pre-built scripts ready for insertion into websites and specialized technical support for integration implementation. Workflows support API integration with external platforms such as RD Station, HubSpot, and Mailchimp.
What industry is Privacy Tools in?
Privacy Tools's product category is Privacy Governance Software. Its primary akta.pro industry code is HDADAFAH, Privacy Management (Consent, DSAR, RoPA), with a secondary code of HDAEADAG, Data Privacy, Consent & Compliance Management. Its NAICS code is 513210 and its SIC code is 7370.