What the kit teaches.
You have a study and a supervisor who has signed off. Then the application asks for the legal basis under the GDPR, a data protection impact assessment, a record of processing, and what happens to the data at the end. This kit teaches you each one: what the document is, why the committee asks for it, and how to draft it from your own study. It is built for someone capable and new, and it never writes your science for you.
Typical workflow
- Describe your study. Answer plain questions about your data, participants, and tools, once.
- Complete the builder. The offline tool turns your answers into the governance pack.
- Review flagged gaps. A guardrail marks the missing legal basis, the undisclosed transfer, the small cell, the blank retention period.
- Export draft documents. The pack, drafted with your details filled in.
- Review with your DPO. Bring a complete record, not a blank form, to the person who decides.
- Submit to your ethics committee, with the paperwork and the funding plan already agreeing.
The three gaps it teaches you to catch
Most ethics applications come back on one of three gaps. The builder flags each one while you draft, and explains it.
Gap 1
Consent under a public authority
It feels like the basis because participants sign a form. For a public institution it usually is not, and the kit flags it and names the honest basis.
Gap 2
Health data, no Article 9 condition
The second legal ground special-category data needs, the one the first draft leaves blank. The kit catches it.
Gap 3
A transfer with no mechanism
A cloud tool or a vendor moving data outside the EEA without a legal mechanism. The kit flags it before the data moves.
What's inside: 13 files
- Research Governance Builder HTMLThe hero tool. Runs in any browser, offline. Six steps draft the pack and flag the gaps. Nothing you type leaves your computer.
- ROPA & governance tracker ExcelYour record of processing, with a guardrail on every row.
- Ethics & governance workbook WordThe by-hand path, with participant information, consent, and assent templates.
- Governance clause pack MarkdownReady-to-adapt clauses for legal basis, transparency, consent, data management, retention, and transfer.
- De-identification guide MarkdownThe three data states under the GDPR, and when data is anonymous rather than only pseudonymous.
- De-identification script PythonReplaces patterned identifiers, flags possible names and small cells for your review, and never touches the original.
- Quick start PDFThe map: the pack, the guardrail, and how to use the kit.
- Worked example PDFOne realistic interview study carried through the whole pack.
- CTIS publicity & patient-involvement module MarkdownFor trials under the EU Clinical Trials Regulation.
- Research plan template MarkdownFive pages, so your ethics paperwork and your funding application say the same thing.
- Researcher CV MarkdownOn the TENK model, the version your funder asks for alongside the plan.
- Prompt pack MarkdownReady prompts that keep drafting tied to your own facts and flag every gap.
- License TextPersonal license; group / facilitation license on request.
Get the Ethics Application Kit
13 files, an offline governance builder, all 1.x updates free. Local-first. €39 launch price (regular €79). Instant download.
Questions
Does it write the application for me?
No. It teaches you what each document is and why it is asked for, drafts the pack from your answers, and flags the gaps. You write the study, and the decisions stay with you and your DPO.
Is it only for Finland?
The framework is European: GDPR legal basis, DPIA, ROPA, transparency, transfers, and the EU Clinical Trials Regulation. The de-identification script recognises Finnish identity codes because that is the author's setting, and the researcher CV follows the Finnish TENK model, but the guide, builder, clause pack, and checks apply across the EEA.
Does anything I type leave my computer?
No. The Research Governance Builder is a single HTML file that runs entirely in your browser, offline. The de-identification script runs locally and never touches your original file. Nothing is uploaded.