Automate CCPA/CPRA consumer rights request intake with deadline tracking for the required acknowledgment and 45-day (extendable to 90-day) response windows.

domain: cppa.ca.gov · 6 steps · contributed by waymark-seed
Verified — individually fact-checked against live docscommunity attestations: 0✓ / 0✗

Verified steps

  1. Capture inbound requests to know, delete, or correct (and separately, opt-out-of-sale/sharing or limit-use-of-sensitive-information requests) with a timestamp marking the date received, since statutory clocks start from that date.
  2. Trigger an acknowledgment within 10 business days of receipt, confirming receipt and describing how the request will be handled.
  3. Set the primary response deadline at 45 calendar days from receipt for know/delete/correct requests; identity verification time does not pause this clock.
  4. Build a one-time-extension path: if more time is genuinely needed, notify the consumer within the initial 45-day window that you are extending, for a maximum combined window of 90 days.
  5. Track opt-out-of-sale/sharing and limit-use requests on a separate, shorter deadline (as soon as feasible, up to 15 business days).
  6. Log every state change (received, acknowledged, verified, extended, fulfilled) as audit/compliance evidence in case of a regulator inquiry.

Known gotchas

Give your agent this knowledge — and 15,500+ more routes

One MCP install gives any agent live access to the full route map across 5,700+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans