dpa-reviewer

Automate first-pass DPA review against GDPR Article 28 and CCPA-CPRA checklists.

Updated May 2, 2026
One-click install
npx skills add https://github.com/marius-bughiu/ooligo --skill dpa-reviewer
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: dpa-reviewer
Source: https://github.com/marius-bughiu/ooligo/tree/main/apps/web/public/artifacts/dpa-review-claude-skill
Command: npx skills add https://github.com/marius-bughiu/ooligo --skill dpa-reviewer

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Privacy counsels and legal ops leads spend hours manually reviewing vendor Data Processing Addendums (DPAs) for GDPR and CCPA-CPRA compliance, often missing vague clauses, red-flag anti-patterns, and inconsistent obligation scoring across vendors.

Core Features & Use Cases

  • Structured first-pass review: Scores every DPA obligation against a customizable firm checklist covering GDPR Article 28 and CCPA-CPRA default requirements, with per-section citations for every finding.
  • Red-flag detection: Automatically flags common anti-patterns like vague breach notification windows, uncapped privacy liability, and broad sub-processor consent waivers that pose compliance risk.
  • Actionable redlines: Generates recommended replacement language sourced from the firm's checklist, prior accepted vendor terms, or standard regulatory text, with clear source attribution for counsel to weight.
  • Use case: A privacy counsel can use this skill to reduce first-pass DPA review time from 2+ hours per document to 10 minutes, ensuring no critical compliance gaps are missed before escalation to review.

Quick Start

Use the dpa-reviewer skill to review the vendor DPA file at '/path/to/vendor-dpa.md' against your firm's checklist at '/path/to/firm-dpa-checklist.md' to generate a structured compliance report with per-section findings and recommended redlines.

Frequently Asked Questions about dpa-reviewer

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate vendor DPA review for GDPR Article 28 compliance?

Automate vendor DPA review by scoring documents against a customizable firm checklist for GDPR Article 28 and CCPA-CPRA requirements, generating citation-backed structured Markdown reports with recommended redlines.

What are common anti-patterns to flag during a data processing agreement review?

Common anti-patterns to flag during a data processing agreement review include vague breach notification windows, uncapped privacy liability, and broad sub-processor consent waivers that pose compliance risks.

How do I generate redlines for vendor DPAs using a firm checklist?

Generate redlines for vendor DPAs by applying a customizable firm checklist to detect compliance gaps, producing recommended replacement language sourced from prior accepted vendor terms or standard regulatory text.

Can I use automated DPA review for both GDPR and CCPA-CPRA compliance?

Yes, automated DPA review supports both GDPR and CCPA-CPRA compliance by applying a firm checklist to score obligations, detect anti-patterns, and generate structured Markdown reports with per-section citations.

Does automated DPA review replace privacy counsel in legal ops workflows?

No, automated DPA review serves as a first-pass tool for privacy counsel and legal ops workflows, reducing review time to 10 minutes while providing clear escalation guidance for final counsel review.

What format does the automated DPA review report output?

The automated DPA review report outputs structured Markdown, containing per-section obligation status, recommended redlines with source attribution, and escalation guidance for privacy counsel.