Your privacy documents are
first-class. Nobody cares.
That's a legal risk. Now what?
Welcome to my sandbox. This is where I test how strategic UX design can turn privacy compliance into something employees follow, AI systems use, and customers trust.
Hello, I'm Nadine
If I'm doing something, it must be useful. Even privacy compliance.

PROBLEM
Drafting documents for regulators
Privacy compliance is written for regulators who'll probably never read it. The people who have to live with it are overlooked.
-
Documents nobody understands waste the legal work you've already paid for.
-
They miss the law's purpose, so they don't remove the risk you paid to remove.
-
They leave the upside on the table: trust, and a reason to choose you over a competitor.
You know how that looks in practice...
Employees skip memos and improvise
Privacy review delays the launch
AI uses the wrong clause
Customers see legalese and click away
SOLUTION
Designing impact with legal precision
I ran into these problems myself. My blog Blankpage needed a privacy notice. My first version was legally sound. And useless. So I redesigned it into an engaging blog post and added a privacy center in the footer.
My own website became the sandbox where I test every idea before writing about it. This eventually led to the Privacy Chameleon Framework. It shows how UX design reinforces the law and creates new opportunities.
Legal or design? Both.
Privacy Chameleon Framework combines law and UX design. Compliance adapts to users while remaining legally defensible. More details
Law alone makes documents defensible, but it won't make anyone read it.
Design alone makes documents user-friendly but it can't tell you if simplifying a clause creates legal exposure.

I tested everything on my own website first.
Click on a project below and you'll get the full story, including what didn't work and why.
Let's bring the first project to life.
PROJECT 1
CHAMELEON POINTS
i
Chameleon Points measure depth of adaptation
Clearer documents
AI-ready compliance
Privacy as a brand experience
Privacy Center
Privacy essentials living in the footer of your website.
KEY INSIGHTS
PROBLEM
Users lose trust with privacy notices written in legalese
Key information feels hidden and is hard to find. Yet users want to make informed decisions.
SOLUTION
Create an overview that users actually engage with
Overview with practical guidance directly in the footer. The full privacy notice is just a click away.
IMPACT
Build trust through transparency and user-friendliness
Reduce support questions and use privacy as a differentiator while others hide behind legalese.
UX DESIGN AMPLIFIES LAW
No overwhelmed users
Visual hierarchy and interactive disclosure give users key details.
Familiar/minimalistic icons
Users already know icons from big tech. Unlike Swiss Privacy Icons.
For the checkbox lovers
Legal text inside main interface
Disclaimer placed inside the Privacy Center using plain language.
LEGAL DESIGN CHALLENGES
Aha moments 🌿
Ready to rethink a privacy notice?
PROJECT 2
CHAMELEON POINTS
i
Chameleon Points measure depth of adaptation
Clearer documents
AI-ready compliance
Privacy as a brand experience
Privacy Notice
Empowering users with a notice that doesn't put them to sleep.
KEY INSIGHTS
PROBLEM
Users don't understand privacy notices and feel overwhelmed
Privacy notices are dense, technical, and written for compliance rather than comprehension.
SOLUTION
A blog post format with storytelling elements
Café storytelling and café theme keep users informed and engaged rather than drowsy.
IMPACT
Compliance becomes a trust and business advantage
Privacy information becomes understandable and memorable enough that users trust it.
UX DESIGN AMPLIFIES LAW
User empowerment
Conversational tone, step-by-step format, and actionable privacy tips.
Two-layer structure
Storytelling why privacy matters. And legal details how data is used.
Easy-to-understand café theme
Café metaphors and icons such as a "takeaway bag" for portability right.
LEGAL DESIGN CHALLENGES
Aha moments 🌿
BONUS • BEHIND THE SCENES
The world's most boring blog post got 65x more visitors!
My old privacy notice got 3 unique visitors in 5 years (one of them might've been me checking if the link still worked). The new blog post version got 40 in its first year, roughly 65x more per year. My learnings? Most of that jump is probably placement. A blog post on the homepage gets found way easier than a link in the footer. So the number doesn't prove people understood or trusted the notice more. What it proves is that where you publish privacy information decides whether it's ever seen at all. And being seen is the starting point for everything else.
Now let's integrate all the insights into a framework to spot new opportunities.
Privacy Chameleon Framework
A chameleon doesn't change what it is. It changes how it appears.
Your obligations stay exactly where they are. What changes is how they reach the people who have to act on them: your employees, your AI systems, your customers. Each one needs something different.
Three chameleons. One makes your documents clearer for employees. Two makes them AI-ready. Three turns privacy into something that customers trust. Who does your privacy need to reach?
Privacy Clarity
Privacy for employees
Privacy is redesigned to be followed by your employees
You've done everything right on paper. Now you want it to change behavior inside your organization.
WHAT UX PRIVACY ENABLES
Policies are read,
understood, and actually implemented
Employees find answers themselves, without constantly asking you questions
Contracts and approvals move faster because the language is clearer
WHAT TO BUILD
Simplification of existing documents using plain language and visual aids
FAQ documents on privacy issues that employees repeatedly ask you
One-pagers What does this mean for me? with decision paths and actionable tips
...and more, tailored to how your employees work best.
Privacy Intelligence
Privacy for AI
Privacy is redesigned so your AI can act on it reliably
You've built the legal foundation. Now you want AI to find the right answer at the right time.
WHAT UX PRIVACY ENABLES
AI systems retrieve the right clause from the right document
Compliance gaps surface automatically across your document library
Privacy infrastructure scales with your business without scaling legal headcount
WHAT TO BUILD
Metadata layers so AI knows what it's reading before clause one
AI-readable obligation register (who, what, deadline, source clause)
Consistent clause identifiers across your document
library
...and more, tailored to your AI deployment and document stack.
Both humans and AI benefit from Privacy Clarity. This tier focuses on what AI needs additionally.
Privacy Experience
Privacy for customers
Privacy is redesigned to make customers choose you
You've made your product user-friendly. Now you want to bring privacy to the same standard.
WHAT UX PRIVACY ENABLES
Customers prefer you over a competitor because your UX privacy builds trust
Privacy is built into your product from day one, so it doesn't delay a launch
Customers who understand data practices opt in more and stay longer
WHAT TO BUILD
Privacy documents based on your brand identity and communication standards
In-product privacy details that answer questions before they arise
Privacy onboarding that builds trust at the moment it matters most
...and more, tailored to your customers and brand identity.
Discover sample projects:
BUILT INTO THE METHOD
Spot compliance gaps
You can only communicate clearly if you know exactly what you do. So gaps and contradictions between what's communicated and what's actually being done comes to light on their own. Before a regulator, incident, or complaint exposes them.
Leave an audit trail
Design work makes you decide why each disclosure reads the way it does, and every decision leaves its reason behind in writing. When someone asks you to justify a wording, the answer already exists.
FAQ
This framework is an ongoing project, currently in version 2.0. It will continuously be adapted to market needs.
About me

Turning privacy into a business asset means rethinking what the law permits, not just what it requires, and implementing that with UX design
MY STORY
My blog Blankpage needed a new privacy notice. It already had one, legally correct but also useless. That bothered me, because I don't build things that aren't useful. I also wanted to sharpen my UX design skills. So the blog became my sandbox. Two projects grew out of it: a privacy notice that welcomes readers into a café, and a Privacy Center in the website footer that shows privacy details at a glance. Since I like to systematize my knowledge, I collected everything in one place, added additional opportunities in UX privacy, and called it the “Privacy Chameleon Framework”.
LIFELONG LEARNING
-
UX Design Professional Certificate
Google (approx. 200 learning hours)
-
Certificate in Cyberpsychology
Dún Laoghaire Institute of Art, Design and Technology
(10 ECTS credits)
-
LL.M. Technology, Media and Telecommunications Law
Queen Mary University of London
-
CAS IoT and Digital Ecosystems
Lucerne University of Applied Sciences and Arts
(15 ECTS credits)
-
Master of Law
University of Zurich, focus on IT law
WORK EXPERIENCE
-
Queen Mary University of London
Jan 2023 – Sept 2023
Research assistant to Prof. Christopher Millard
-
CORE Attorneys
July 2022 – Sept 2022
Intern • competition law
-
LAUX LAWYERS
Feb 2021 – July 2022
Legal trainee • IT law
-
Stump und Partner Patentanwälte
Oct 2018 – Nov 2019
Assistant • patent law
SELECTED PUBLICATIONS
-
The double erosion of data protection law, WEKA-NL Datenschutz, 01.2022 (in German)
-
Cloud computing in the vortex of cantonal data protection laws, WEKA-NL Datenschutz, 08.2021 (in German)
SELECTED BLOG POSTS
-
How to build your unique practice style in IT law (Part 1), Blankpage, 26.04.2026
-
How to develop "IT-shaped thinking" as a lawyer, Blankpage, 18.05.2025
MY BLOG BLANKPAGE
I also run www.blankpage.world, a blog about legal innovation. Curious about step-by-step tips on building your unique practice style and intellectual capital in IT law?
Move your mouse over the Blankpage logo below to create a wormhole straight to the blog.

Our next project... Exchange ideas
Two lines is enough, don't worry. You'll hear back within two working days. If it's easier to talk, we'll take twenty minutes.
Curious about one of the projects?
Questions about the Privacy Chameleon Framework?
Spotted a flaw in my reasoning?
Anything else?









