The EDPB has published a harmonized DPIA template — the first pan-European documentary standard for impact assessments. Open for public consultation until 9 June.
Key insight: a clear separation between design risk (processing works as intended but still poses risks) and incident risk (breaches, attacks, misconfigurations).
The design choices are the risk, before any failure occurs.
Full analysis:
https://www.nicfab.eu/en/posts/edpb-dpia-template/