Anonymisation removes all means reasonably likely to be used to identify a natural person from a dataset; if successful the data is outside GDPR scope. The report surveys the main anonymisation models including k-anonymity, l-diversity and t-closeness and warns that anonymisation must be assessed against motivated-intruder and re-identification attacks.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.