Data Privacy Compliance

Determine GDPR, CCPA/CPRA, and HIPAA applicability and lawful bases for data processing.

Updated Aug 23, 2026
One-click install
npx skills add https://github.com/sharkitect-solutions/sharkitect-claude-toolkit --skill data-privacy-compliance
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: Data Privacy Compliance
Source: https://github.com/sharkitect-solutions/sharkitect-claude-toolkit/tree/main/skills/data-privacy-compliance
Command: npx skills add https://github.com/sharkitect-solutions/sharkitect-claude-toolkit --skill data-privacy-compliance

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill helps you understand and implement data privacy regulations, ensuring your systems comply with legal requirements and avoid costly fines.

Core Features & Use Cases

  • Regulation Applicability: Determines which privacy laws (GDPR, CCPA/CPRA, HIPAA, etc.) apply to your system.
  • Lawful Basis Selection: Guides you in choosing the correct legal basis for processing personal data.
  • Data Processing Agreements (DPAs): Highlights critical clauses to ensure vendor compliance.
  • Cross-Border Transfers: Provides a framework for legally transferring data internationally.
  • Breach Response: Outlines a decision tree for responding to data breaches within the 72-hour regulatory window.
  • Use Case: You're launching a new app that collects user data from both the EU and California. This Skill will help you identify that both GDPR and CCPA/CPRA apply, guide you on selecting the appropriate lawful basis for each type of data processing, and advise on necessary DPA clauses for your cloud provider.

Quick Start

Use the Data Privacy Compliance skill to determine which regulations apply to a system processing data about EU and California residents.

Frequently Asked Questions about Data Privacy Compliance

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I determine if GDPR, CCPA, or HIPAA applies to my application?

GDPR, CCPA, and HIPAA applicability depends on user location, data types, and business scope. This Skill analyzes your system's data collection to determine which specific privacy regulations legally apply to your operations.

What is the correct lawful basis for processing personal data under GDPR?

The correct lawful basis for processing personal data depends on your specific data collection context. This Skill guides you in selecting the appropriate legal justification under GDPR based on your system's processing activities and user interactions.

How do I structure a Data Processing Agreement for vendor compliance?

Structuring a Data Processing Agreement requires identifying critical clauses that ensure vendor compliance. This Skill highlights essential DPA terms needed to legally bind your cloud providers and third-party processors to privacy regulations.

How do I manage cross-border data transfers legally?

Managing cross-border data transfers legally requires a framework for international data movement. This Skill provides the structural framework needed to ensure your cross-border transfers comply with applicable privacy regulations.

What is the best way to respond to a data breach within 72 hours?

The best way to respond to a data breach is following a structured decision tree. This Skill outlines a breach response framework to help you manage notifications and regulatory requirements within the 72-hour GDPR reporting window.

When do I need a Data Processing Agreement for my cloud provider?

You need a Data Processing Agreement whenever a third-party processes personal data on your behalf. This Skill helps identify when vendor compliance requires a DPA and advises on the necessary clauses for your cloud architecture.