dutch-privacy-gdpr

Explain Dutch AVG/GDPR compliance, legal bases, DPIAs, and AP enforcement.

1|Updated Mar 11, 2026
One-click install
npx skills add https://github.com/FutureAtoms/claude-skills-backup --skill dutch-privacy-gdpr
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: dutch-privacy-gdpr
Source: https://github.com/FutureAtoms/claude-skills-backup/tree/main/dutch-privacy-gdpr
Command: npx skills add https://github.com/FutureAtoms/claude-skills-backup --skill dutch-privacy-gdpr

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

This Skill helps users understand and comply with Dutch data protection laws (AVG/GDPR), including data processing agreements, DPIAs, and enforcement actions by the Autoriteit Persoonsgegevens (AP).

Core Features & Use Cases

  • Compliance Guidance: Provides detailed explanations of legal bases, data subject rights, and security measures under AVG/UAVG.
  • DPIA Assistance: Guides users through the Data Protection Impact Assessment process.
  • Enforcement Insights: Details AP enforcement practices, fines, and priority areas.
  • Use Case: A Dutch company is launching a new app that processes user data. They need to understand the legal basis for processing, ensure they have a DPIA, and know their obligations regarding data breaches and data subject requests under Dutch law.

Quick Start

Provide a step-by-step guide on how to conduct a Data Protection Impact Assessment (DPIA) for a new employee monitoring system.

Frequently Asked Questions about dutch-privacy-gdpr

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
When do I need to conduct a DPIA under Dutch AVG law?

A DPIA under Dutch AVG law is required when processing personal data involves high risks to individual rights and freedoms, such as systematic monitoring or large-scale data handling. The Autoriteit Persoonsgegevens mandates this assessment for high-risk processing activities.

How do I notify the Autoriteit Persoonsgegevens of a data breach in the Netherlands?

To notify the Autoriteit Persoonsgegevens of a data breach in the Netherlands, you must report the breach within 72 hours of discovery. AVG compliance requires detailing the nature of the breach, potential impacts, and mitigation measures taken.

What legal bases for data processing are valid under the UAVG and AVG?

Valid legal bases for data processing under the UAVG and AVG include consent, contract necessity, legal obligation, vital interests, public task, and legitimate interests. The UAVG provides specific implementations for these bases within the Netherlands jurisdiction.

How do I handle international data transfers from the Netherlands while maintaining GDPR compliance?

Handling international data transfers from the Netherlands requires GDPR compliance by ensuring adequate protection levels in the receiving country. You must use Standard Contractual Clauses or other AP-approved safeguards to legitimize the transfer.

What are the enforcement practices and fine priorities of the Autoriteit Persoonsgegevens?

Autoriteit Persoonsgegevens enforcement practices prioritize violations involving data subject rights, illegal data sharing, and inadequate security measures. Fines can reach up to 20 million euros or 4% of global annual turnover for serious AVG infringements.