privacy-impact-assessment-review

Installation
SKILL.md

Privacy Impact Assessment Review

Use this skill to convert privacy impact assessment, data processing, minimization, legal basis, vendor, retention, and mitigation questions into a concrete artifact with owners, gates, metrics, and recovery paths.

Workflow

  1. Identify feature scope, user groups, data collected, purpose, legal basis, vendors, AI/analytics use, retention, sharing, region, sensitive data, and user controls.
  2. Read references/privacy-impact-assessment-patterns.md.
  3. Classify processing as low-risk routine, consent-sensitive, vendor/subprocessor, AI/profiling, cross-border transfer, sensitive data, child/regulated, or high-risk DPIA-needed.
  4. Define data map, minimization, notice/consent, access controls, retention/deletion, DSAR path, risk mitigations, launch gate, and record of decision.
  5. Produce PIA report, state machine, decision table, event schema, risk checklist, and mitigation plan.

When not to use

  • Do not use for generic advice the base model already handles without this skill's specific artifact contract.

Guardrails

Installs
38
Repository
sylphxai/skills
GitHub Stars
1
First Seen
Jun 30, 2026
privacy-impact-assessment-review — sylphxai/skills