compliance

Guide GDPR, CCPA/CPRA, and global privacy compliance workflows.

Updated Jun 19, 2026
One-click install
npx skills add https://github.com/MuhammadUA/Axe --skill compliance-muhammadua
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: compliance
Source: https://github.com/MuhammadUA/Axe/tree/main/.kortix/opencode/skills/GENERAL-KNOWLEDGE-WORKER/compliance
Command: npx skills add https://github.com/MuhammadUA/Axe --skill compliance-muhammadua

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

In-house legal teams face significant challenges navigating overlapping global privacy regulations, reviewing vendor data processing agreements for compliance gaps, and responding to data subject requests within strict regulatory timelines, all while avoiding costly fines and reputational damage.

Core Features & Use Cases

  • Multi-Jurisdiction Privacy Guidance: Clear breakdowns of key obligations under GDPR, CCPA/CPRA, UK GDPR, LGPD, and other global privacy laws, including response timelines and data subject rights.
  • Structured DPA Review: A comprehensive checklist to vet vendor Data Processing Agreements for required elements, processor obligations, international transfer mechanisms, and common high-risk gaps.
  • End-to-End DSR Workflows: Step-by-step processes for data subject request intake, identity verification, exemption checks, response preparation, and record-keeping across applicable regulations.
  • Use Case: For example, if your team receives a GDPR erasure request from an EU user, use this skill to follow the correct verification steps, check for applicable exemptions like litigation holds, and prepare a compliant response within the required 30-day window.

Quick Start

Use the compliance skill to review a new vendor's Data Processing Agreement for GDPR alignment and identify any high-risk compliance gaps to address before execution.

Frequently Asked Questions about compliance

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I handle a GDPR data subject request within the required response timeline?

To handle a GDPR data subject request, follow structured workflows for request intake, identity verification, exemption checks, and response preparation to meet the mandatory 30-day regulatory timeline.

What should I look for when reviewing a vendor Data Processing Agreement for compliance?

Reviewing a Data Processing Agreement requires checking a structured list of required elements, processor obligations, international transfer mechanisms, and common high-risk compliance gaps before execution.

How do I manage cross-border data transfers under global privacy laws like CCPA and LGPD?

Managing cross-border data transfers involves applying clear breakdowns of key obligations under GDPR, CCPA/CPRA, UK GDPR, and LGPD to ensure international transfer mechanisms meet multi-jurisdiction privacy requirements.

Can I check for applicable exemptions when my team receives a GDPR erasure request?

Yes, you can check for applicable exemptions like litigation holds during the data subject request workflow, allowing you to prepare a compliant response within the required 30-day window.

What are the key obligations for in-house legal teams navigating overlapping global privacy regulations?

Key obligations include tracking regulatory response timelines, verifying data subject rights, reviewing vendor agreements for compliance gaps, and meeting mandatory legal duties to reduce organizational compliance risk.