arckit-au-ndb-playbook

Generate an Australian Privacy Act Part IIIC Notifiable Data Breach response playbook.

Updated Jul 24, 2026
One-click install
npx skills add https://github.com/tractorjuice/arckit-kimi --skill arckit-au-ndb-playbook
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: arckit-au-ndb-playbook
Source: https://github.com/tractorjuice/arckit-kimi/tree/main/skills/arckit-au-ndb-playbook
Command: npx skills add https://github.com/tractorjuice/arckit-kimi --skill arckit-au-ndb-playbook

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) components.

What problem does it solve?

This Skill addresses the high-pressure, time-sensitive requirement of generating a compliant Notifiable Data Breach (NDB) response playbook under the Australian Privacy Act 1988.

Core Features & Use Cases

  • Statutory Compliance: Generates a structured response framework aligned with Part IIIC of the Privacy Act, including the 30-day OAIC notification timeline.
  • Evidence Integration: Automatically maps project-specific artefacts like DFDs, risk registers, and ServiceNow workflows to breach scope and remediation evidence.
  • Use Case: When a potential data breach is identified, use this Skill to instantly generate a tailored playbook that guides the Privacy Officer through the eligibility test, containment procedures, and regulatory notification requirements.

Quick Start

Use the arckit-au-ndb-playbook skill to generate a new response playbook for the current project.

Frequently Asked Questions about arckit-au-ndb-playbook

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I create an Australian Notifiable Data Breach response playbook for enterprise architecture projects?

You can generate an Australian NDB response playbook by mapping project artefacts like data models and risk registers to Privacy Act 1988 Part IIIC compliance requirements. This framework guides you through the 30-day OAIC notification timeline and stakeholder RACI matrices.

What is an eligible data breach under the Australian Privacy Act?

An eligible data breach under the Australian Privacy Act 1988 Part IIIC involves unauthorized access or disclosure of personal information posing likely serious harm. The playbook facilitates this assessment to determine if statutory notification is required.

How do I assess the 30-day notification timeline for an Australian data breach?

Assess the 30-day OAIC notification timeline by conducting an evidence-based eligibility test using your existing incident management workflows. The playbook maps your project artefacts to ensure accurate, compliant reporting within the statutory period.

Can I map existing risk registers and data models to the NDB scheme compliance requirements?

Yes, you can map existing risk registers, data models, and ServiceNow workflows to breach scope and remediation evidence. This integration with project artefacts ensures accurate evidence-based reporting for the OAIC.

What is needed to generate a Privacy Officer's guide for an Australian data breach?

Generating a guide requires integration with existing project artefacts including data models, risk registers, and incident management workflows. These inputs facilitate the assessment of eligible data breaches and the creation of a tailored response playbook.