What is privacy by design?
Privacy by design means building privacy protections into a system from the start instead of adding them later. Privacy by default means the strictest privacy settings apply automatically, without the user having to change anything. GDPR Article 25 requires both.
What the buyer is really asking
The question is whether your product collects and exposes the minimum by default, without the customer having to switch things off. Give concrete defaults such as optional fields, short retention, or private-by-default sharing. General statements about valuing privacy do not answer it.
Other ways buyers ask it
Every one of these wants the same answer:
- “Are your systems configured privacy by default?”
- “How do you apply privacy by design in product development?”
- “Do you practice data minimization?”
- “What personal data do you collect by default?”
Evidence to have ready
- Product documentation for default privacy settings
- A design review checklist that includes privacy questions
- Your record of processing activities
How Tyrvar answers this
Tyrvar treats every wording above as one question. You write the answer once, attach the evidence, and revisit it when your setup changes. Each buyer gets that approved answer no matter how their questionnaire words it. If you have not answered it yet, Tyrvar flags the question for you and does not make something up. Try it on your own questionnaire.