Operators that are legal entities must designate a person responsible for organising the processing of personal data, with the powers to organise compliance, conduct internal control and respond to data subjects and the regulator.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.