What problem does it solve?
Russian personal data operators face strict fines from RKN for mishandling data subject access requests (DSAR) under Federal Law 152-FZ, including missed deadlines, incorrect identity verification, incomplete responses, or accidental disclosure of third-party personal data.
Core Features & Use Cases
- End-to-end DSAR workflow: Guides users through every step of processing a DSAR, from request type identification to final response sign-off and audit trail documentation.
- Regulatory compliance built-in: Includes mandatory 152-FZ requirements, correct deadline calculations (30 days general, 10 working days for consent withdrawal, 7 working days for correction), exemption rules, and up-to-date RKN fine scales.
- Real-world case patterns: Provides examples of common RKN violation patterns (late responses, unmotivated refusals, accidental data leaks) to help users avoid repeat mistakes.
- Use case: A company receives a request from a customer to delete their personal data; use this skill to verify the requester's identity, locate all relevant data across company systems, assess applicable retention exemptions, draft a compliant response, and update the internal audit trail.
Quick Start
Use the dsar-response skill to process the pasted data subject personal data request from your user and draft a fully compliant 152-FZ response letter.