top of page

PORTFOLIO

Compliance that doesn't feel like legalese. 

Turning privacy compliance from a necessary burden to a business asset using strategic UX design. ​​​​​

Privacy Center

Privacy Center.jpg

Privacy Notice

20250910162605.png
20250910163302.png

Roadmap

Privacy compliance is often seen as a burden, but what if it could be a business asset? This question led me to UX privacy: the intersection of data protection law and user experience design.

Before diving deep into UX privacy, I wanted to understand UX/UI design from the inside out, especially its strategic business application. So I approached it like an entrepreneur. I already run a blog about legal innovation called Blankpage and asked myself "How can I make my privacy documents compliant while also driving Blankpage forward?" The result is this portfolio. It showcases UX privacy projects and their implementation challenges and opportunities. The next two stages will build on this foundation: dive deeper into UX privacy with a blog, followed by applying both design experience and legal insights to help clients rethink privacy compliance and turn it into a business asset.​​​​​​​​​​​​​​​

CURRENT STAGE

1

pen-tool.png

Practical design skills

Understand UX/UI from a designer perspective by strategically applying design skills to my blog.

Create working prototypes of UX-enhanced documents to drive my blog forward

Showcase the prototypes in this UX privacy portfolio (I'll add more prototypes over time)

Analyze and document key design challenges of the  prototypes 

Synthesize learnings from design challenges in a "Privacy Chameleon Framework". More details in the FAQs below.

2

code.png

Deep understanding

Write blog posts to understand the legal foundations of UX privacy and develop them further.

Create a blog exploring how UX design can turn privacy compliance into a business asset and solving common implementation challenges 

Share practical tips and insights on UX privacy 

3

graph.png

Practical application

Apply expertise in practice to help clients turn privacy compliance into a business asset.

Advise clients on implementing UX-enhanced compliance

Show possibilities clients haven't imagined yet

Develop frameworks and best practices 

Projects
Privacy Center

Explore my latest projects

Privacy Center

Privacy essentials living in the footer of your website.

Project

1

Description

Most people won't read long legal documents, which creates trust problems when important information feels hidden or hard to find. The Privacy Center turns static legal documents into an interactive overview with practical guidance directly in the footer. The whole Privacy Notice is just a click away for those needing more information.

​​

This approach can build trust through transparency, reduce support questions by answering common privacy concerns upfront, and show that privacy compliance can become a competitive differentiator while competitors hide behind legalese.

Key features

Interactive disclosure with clear visual hierarchy, giving users essential information without overwhelming them.

 

Familiar icons (rather than Swiss privacy icons) together with more detailed information for better understanding.

 

Integration of legal text such as disclaimers into the Privacy Center using humanized language while staying legally sound.

Privacy Chameleon Points

chameleon.png
chameleon.png
chameleon.png

Meet the Privacy Chameleon!

The points show where this project sits within my framework: Privacy Clarity (1 point), Privacy Experience (2 points), or Privacy Differentiation (3 points). More in the FAQs below. 

Legal innovation process

I already had a privacy notice for my blog Blankpage, but I wanted to support it with a visual overview in the footer. First, I considered Swiss privacy icons, but they were too complex visually and limited to what happens with data. So I included additional information, such as who handles the data and what users can do to manage their privacy. This is the story behind some of my legal design challenges.

Behind the scene Discover the design decisions of all previous versions

4 more versions to discover...

Privacy Notice

Privacy Notice

Empowering users with a privacy notice that doesn't put them to sleep.

Project

2

Description

Traditional privacy notices are legal documents dressed up as user information: dense, technical, and written primarily for compliance rather than comprehension. This Privacy Notice breaks down privacy information into a blog post, using a café theme that keeps users engaged rather than drowsy.

 

This approach can reduce legal risk by making sure users understand what they're agreeing to, build trust through transparency, and show how legal compliance can work with user experience instead of against it.

Privacy Chameleon Points

chameleon.png
chameleon.png
chameleon.png

Key features

User empowerment alongside compliance. Includes conversational tone, step-by-step format, and actionable tips on managing privacy that users can apply to other websites as well.

Two-layer structure where each section opens with café storytelling to explain privacy concepts and why they matter, and then describes how data is used.

 

Familiar café theme makes legal concepts easier to grasp. Includes café storytelling, café explanations, and themed icons (open café doors for access, takeaway bag for portability, etc.).

For the check-the-box lovers

Legal innovation process

When I needed a privacy notice for my blog Blankpage, I refused to create a document just to hide in the footer. If I'm doing something, it needs to be useful. But standard legal templates don't serve readers or the brand. So I redesigned mine as a blog post and placed it on the homepage alongside my other content. This is the story behind turning a legal document into an empowering blog post.

CV

Curriculum Vitae

My third and most personal project. 

Project

3

Key features

Clickable boxes highlight key credentials in blue for faster scanning and let users jump straight to the websites.

Card design for projects and blog posts uses visual hierarchy to spotlight the most important work, while keeping everything else in simple text.

 

​Call-to-action​ at the bottom turns the CV into a website landing page. Interested users can explore my websites, blog posts, and projects that reveal my personality and thinking style beyond credentials.

ABOUT ME

Turning privacy into a business asset requires rethinking what the law permits, not just what it requires, and implementing that with UX design.

Legal design often treats compliance as a fixed constraint to make more user-friendly. That misses a huge opportunity. Turning privacy into a business asset requires rethinking what the law permits, not just what it requires, and implementing that with UX design. And for that, you need both: expertise in privacy and design skills.

That's exactly what I do. I studied law at the University of Zurich with a focus on IT law, then specialized further in legal practice and academia and went on to do an LL.M. in Technology, Media and Telecommunications Law at Queen Mary University of London. To deepen my understanding in UX privacy, I'm taking a practice-first approach to research: I started by building prototypes of UX privacy documents (the projects of this website), and I'm now preparing for a PhD in Swiss data protection law and UX design to develop the theoretical foundation. The goal is to take that expertise back into practice, helping organizations turn privacy compliance into a business asset. I'm what you might call an IT-shaped lawyer​: someone who bridges legal requirements, user experience, and business strategy through both research and hands-on implementation.

I've also put these UX design principles into action with my CV. Have a look at the document above!

FAQ

Frequently asked questions

What is UX privacy not?

It isn't just making things look pretty. 

It isn't just adding fancy fonts, using bright colors, or simplifying language without substance.

It isn't cutting corners on compliance.

It's about enhancing compliance through UX design principles.

It isn't just the privacy notice. 

It's about all privacy touchpoints in the user journey that a company wants to better align with its business goals.

What is UX privacy?

It shifts focus from legal defensibility to business-aligned design.

While defensibility reduces legal risks, it can increase other risks by not aligning privacy experiences with business goals.

​It transforms complex regulations into user-centric experiences​​. 

By applying UX design (including UI design), users such as consumers, employees, and business-partners can understand and act on legal text instead of ignoring or misinterpreting it.

It's a compliance audit opportunity. 

Clear communication requires clear understanding of privacy practices first.

chameleon.png

Enters the Privacy Chameleon...

The Privacy Chameleon shifts focus from legal defensibility to business-aligned design using a three-tiered approach. 

Problem

Privacy communication is typically designed for one-size-fits-all defensibility, using dense text and trying to cover every edge case.

 

While this approach may reduce legal risks, it can increase other risks by missing the opportunity to align privacy with business goals.​​​

Solution

The Privacy Chameleon uses three UX privacy approaches, depending on privacy's role in the organization. 

​​

1

Privacy Clarity

Use minimal UX design like clear language, visual hierarchy, and scannable format to meet legal requirements and make information more accessible. 

2

Privacy Experience

Apply UX design to reduce friction and operational costs by redesigning privacy touchpoints. 

3

Privacy Differentiation

Integrate privacy into your product experience and brand identity using UX design. ​​

Framework

Deep dive: the Privacy Chameleon Framework

Prototype

The Privacy Chameleon Framework helps you identify which level of UX privacy is needed using a point system from 1 to 3 (the Privacy Chameleon Points you saw in my projects above). The level depends on privacy's role in your organization: privacy as a cost center, risk reducer, or revenue driver.

Privacy Clarity

Privacy as a cost center

Meet requirements and make privacy accessible using clear language and visual hierarchy.

Indicators you're here

  • Privacy friction costs you little to nothing (minimal support tickets, no conversion impact, no lost deals, etc.).

  • Users don't compare privacy practices when choosing you over competitors.

  • Your resources are limited or better spent on your actual competitive advantages.

UX privacy approach

  • Identify formats that create legal risk (dark patterns, dense paragraphs nobody reads, unclear consent flows, misleading language, etc.).

  • Transform compliance into clean, easy-to-scan formats using visual hierarchy, short paragraphs, and clear language while keeping it legally sound.

Examples

  • Privacy notice with privacy  icons, short paragraphs, and language readers understand.

  • Training material with visual hierarchy and critical compliance points in color.

chameleon.png

Privacy Experience

Privacy as a risk reducer

Lower friction and operational costs by improving the design of privacy touchpoints.

Indicators you're here

  • Privacy friction has ongoing costs (support tickets, abandoned checkouts, employee confusion due to poor privacy design, etc.).

  • Users care about privacy enough that confusion or misleading information creates friction, but it's not their primary decision factor.

  • You can assign resources to improve privacy touchpoints.

UX privacy approach

  • Map the user journey and identify privacy touchpoints that create friction (checkout abandonment, repetitive consent requests, unclear data sharing, etc.).

  • Apply basic UX design,  progressive disclosure, interactive elements, or contextual explanations so users get information when they need it. 

Examples

  • Interactive employee training  with progress tracking. 

  • FAQs answering common privacy questions.

  • Visual data mapping tool for compliance teams​. 

chameleon.png
chameleon.png

Privacy Differentiation

Privacy as a revenue driver

Build competitive advantage by integrating privacy as a core product feature.

Indicators you're here

  • Privacy concerns block revenue growth (unable to enter privacy-sensitive markets, lose enterprise deals during vendor review, etc.).

  • Privacy practices are a primary decision factor for your users.

  • You can integrate privacy into product development with resources for ongoing maintenance.

UX privacy approach

  • Integrate privacy into your product experience and brand identity.

  • Privacy isn't an afterthought buried in footers but a feature users encounter naturally.

  • The privacy design meets compliance, builds trust, and differentiates you where competitors use legalese.

Examples

  • My projects (Privacy Center and Privacy Notice) that have been fully integrated into my privacy and education brand.

  • Onboarding that makes privacy feel like a regular product feature.

chameleon.png
chameleon.png
chameleon.png

What are typical legal risks and how are they mitigated? 

Risk 1

Regulatory uncertainty.

Swiss and EU authorities haven't usually established clear standards for innovative formats, creating risk even when users benefit.​

Solution 1

​​​Documentation of design reasoning for regulatory defense.

Create an audit trail showing why each UX decision was made and how it meets (or exceeds) legal requirements.

Risk 2

Compliance gaps through poor coordination.

When legal, design, and development teams aren't properly coordinated, user-friendly designs can accidentally overlook or misstate legal requirements. ​​​

Solution 2

Iterative legal review built into design process.

Legal reviews happen at multiple design stages (wireframes, prototypes, final), not just at launch. This catches compliance gaps early when they're cheap to fix and ensures legal requirements shape design decisions already from the start.

Risk 3

Multi-jurisdictional compliance conflicts.

Basic UX improvements usually translate across countries. But sophisticated approaches may require country-specific changes, creating maintenance and consistency challenges.

Solution 3

Modular design for different countries.

Build privacy communication as separate, reusable components that can be easily adapted per country while maintaining UX consistency, ultimately also reducing compliance costs.

How does the framework itself reduce legal risk?

1

Early detection of compliance gaps prevents bigger problems. 

2

The framework forces organizations to examine their privacy practices before designing communication. It's a compliance audit opportunity that reveals gaps that defensibility approaches often miss. Finding problems during UX design lets you fix them before an incident, audit, or complaint happens.

Level matching reduces both over- and under-compliance. 

The framework matches compliance investment to actual risk. Privacy Clarity prevents wasting resources on unnecessary design complexity. Privacy Experience and Privacy Differentiation ensure sufficient investment where privacy friction creates risk or lost opportunities.

3

Transparency enables better legal review.

Clear communication makes it easier for legal teams to check accuracy. When privacy information is designed to be understood rather than defensible, lawyers can more easily spot errors, identify missing disclosures, and ensure consistency between what's communicated and what's practiced. ​​​​​​​

4

Last but not least: traditional privacy compliance creates its own risks. 

Legally "perfect" text that users like consumers and employees don't read or understand creates legal risks in itself. Not higher protection. 

chameleon.png

Can I travel to your other website?

Yes, just use the wormhole below!

I also created www.blankpage.world, a blog with tips about legal innovation. Learn how to build your unique practice style and intellectual capital in IT law. Time to become a legal innovator. 

Blankpage.png
Contact

Your next step? Write to me

Questions about this website? 

Interested in exchanging ideas?

Suggestions for a blog post? 

20240918061845_edited.jpg
comic.png
signature.png

.

My projects

PRIVACY CENTER

Your privacy at a glance

PRIVACY NOTICE

How to manage your privacy 

CV

Find out more about me

BLANKPAGE

Visit my blog about legal innovation 

UX privacy.

20250125230621.png

Nadine Rinderknecht

Hello! I've built this website to show you that data protection law can be more than just check the boxes.

 What are you curious about? 

Privacy Center Your privacy at a glance

Who handles your data?

Nadine Rinderknecht Owner of UXprivacy

Wix.com

Hosting provider

Others

Website analysis provider, video provider, and (if required by law) authorities

What else should you know?

Source of data

Data sources

You and website analysis providers

  • ​Y​ou via contact form, email, or otherwise 

  • Website analysis providers: Wix's built-in analysis tool and Visitor Analytics

documents.png

Data types

General and

location data

  • General data: your IP address, sites visited, browser used, etc.

  • Location data: your approximate location (based on analysis tools) 

Purposes of processing

Operate/improve website and communicate 

  • Operate/improve this website like server management and user experience 

  • Communicate with you like responding to your queries

Source of data
Source of data

Data sharing & transfer

Service providers potentially worldwide

  • Data shared primarily with hosting, website analysis, and video providers as well as their sub-processors 

  • Data transferred also outside Switzerland and the EU, potentially worldwide 

What can you do?

panel.png

Manage cookies & similar tech

Align your privacy measures with your values. This ranges from keeping default settings to managing cookies and similar tech using privacy tools.

Your tools

Use incognito mode
to hide browsing history

Manage cookies
to control which sites can track you

Enable enhanced privacy settings
to block trackers

Use a VPN
to hide IP address and location

tools.png

Know your rights

You can intervene in how your data is used. This includes viewing and updating your data, restricting its use, or moving it to another service.

Your rights

Access data 
to know what's
on file

open-door.png
take-away_edited.png

Take data away
to yourself or another
service

Limit or object 
to data processing
activities

Correct or delete
your data to
clean it up

exchange.png

Check back regularly

This Privacy Center and the Privacy Notice may be updated at any time, so check them regularly.

Need more details? Check the privacy notices of UXprivacy and my service providers.

This Privacy Center only summarizes key data processing activities. If you need more details, please check the privacy notices of UXprivacy and my service providers. If there are any discrepancies, the privacy notices prevail.

 

I hope this overview was helpful. Now you've earned a coffee break!

Connect with me :)

© 2025-2026  Nadine Rinderknecht​

bottom of page