What problem does it solve?
This Skill resolves uncertainty about how to safely store, access, and retain sensitive data by turning data classification into enforceable rules instead of policy theater.
Core Features & Use Cases
- Assign the correct data tier (public, internal, confidential, restricted) using data-driven decision rules.
- Handle PII correctly, including minimization, purpose limitation, field-level access, deletion-on-request, and cross-border considerations.
- Design controls and operational processes for encryption, least-privilege authorization, immutable audit logging, retention bounds, and leak-path mitigation.
- Audit and remediate misclassification by identifying where data leaks sideways (logs, metrics/traces, error reports, caches, backups, exports, vendor pipelines) and what to change.
Example: Your team discovers that debug logs include email and phone for months—use this Skill to classify the data as restricted/PII and produce a practical mitigation and remediation plan across logs, retention, access controls, and auditability.
Quick Start
Tell the AI: "We’re adding a dataset that contains customer email and billing address; classify it and specify storage controls, access model, retention, and what audit fields we must log."