1. National Institute of Standards and Technology (NIST) Special Publication 800-122, Guide to Protecting the Confidentiality of Personally Identifiable Information (PII). Section 3.3.2, "Fair Information Practice Principles," lists "Data Quality and Integrity," stating, "PII should be accurate, relevant, timely, and complete for the purpose for which it is to be used." This principle is the foundation for data integrity requirements in a PIA.
2. Organisation for Economic Co-operation and Development (OECD), OECD Guidelines on the Protection of Privacy and Transborder Flows of Personal Data. Part Two, Section 12, "The Data Quality Principle," states: "Personal data should be relevant to the purposes for which they are to be used, and, to the extent necessary for those purposes, should be accurate, complete and kept up-to-date." This is a foundational document for modern privacy law and PIAs.
3. ISO/IEC 29134:2017, Information technology — Security techniques — Guidelines for privacy impact assessment. Section 7.3.3, "Description of the information flows," requires the PIA to detail how PII is processed. This implicitly includes the measures taken to ensure data quality and accuracy as part of the processing description, which aligns with data integrity.