Owners and processors must take organisational and technical measures to protect personal data from unlawful processing, accidental loss, destruction or damage and must comply with requirements established by law and the Ombudsperson.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.