France's data protection authority, the Commission nationale de l'informatique et des libertés, introduced a self-assessment tool for binding corporate rules. The tool allows companies that transfer personal data outside of the EU to "check the level of maturity of the project in relation to the requirements of the BCR standards adopted by the European Data Protection Board."