What problem does it solve?
dpa-review helps you quickly evaluate a data processing agreement (DPA) against your organization’s established privacy playbook by identifying mismatches, gaps, and risky terms and turning them into a review memo with targeted redlines.
Core Features & Use Cases
- Processor vs. controller review mode: Detects whether you’re acting as the processor (customer’s DPA to you) or the controller (you to a vendor) and applies the correct half of the playbook.
- Term-by-term DPA gap analysis: Checks core clauses such as roles, processing scope, subprocessor changes, security measures, breach notice timing, audit rights, international transfers, deletion/return, and liability.
- Privacy policy consistency check: Flags conflicts between what the DPA promises and what your privacy policy commits to.
- Redline-ready negotiation output: Produces a structured memo with a clear bottom line, issue ratings, consolidated recommended redlines, and fallback/escalation guidance.
Quick Start
Use the command shown in the skill to review the attached file customer-dpa.pdf.