gdpr-data-handling

Manage GDPR consent records, retention policies, data subject rights, and breach-response workflows.

Updated Apr 5, 2026
One-click install
npx skills add https://github.com/Jhabbig/Habbig --skill gdpr-data-handling-jhabbig
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: gdpr-data-handling
Source: https://github.com/Jhabbig/Habbig/tree/main/.claude/plugins/wshobson/hr-legal-compliance/skills/gdpr-data-handling
Command: npx skills add https://github.com/Jhabbig/Habbig --skill gdpr-data-handling-jhabbig

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps you design and review systems that process EU personal data so they meet GDPR requirements for consent, transparency, retention, and user rights without ad hoc compliance work.

Core Features & Use Cases

  • Consent Management: Record, audit, and verify user consent by purpose so marketing, analytics, and other processing activities remain lawful.
  • Data Subject Rights: Handle access, erasure, rectification, portability, and objection requests with clear deadlines and traceable outcomes.
  • Retention and Breach Response: Enforce data retention schedules, anonymization or deletion rules, and incident response steps for breach notification.
  • Use Case: A product team launching in the EU can use this Skill to map legal bases, build a compliant consent flow, document retention periods, and prepare DSAR and breach workflows before release.

Quick Start

Use the gdpr-data-handling skill to review my EU data processing workflow for consent, retention, data subject rights, and breach-response compliance.

Frequently Asked Questions about gdpr-data-handling

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I build GDPR-compliant data workflows for an EU web app?

To build GDPR-compliant data workflows, you must map lawful bases, implement consent recording by purpose, enforce retention schedules, and prepare data subject rights and breach notification procedures before launch.

What is the best way to manage data subject access requests and meet DSAR deadlines?

Managing data subject access requests requires a workflow that handles access, erasure, rectification, and portability with clear deadlines and traceable outcomes to satisfy DSAR compliance.

How does consent management work for GDPR compliance in data platforms?

Consent management for GDPR works by recording, auditing, and verifying user consent by specific processing purpose, ensuring marketing and analytics activities remain lawful with full audit trails.

Do I need a 72-hour breach notification workflow for my API processing EU personal data?

Yes, systems processing EU personal data need incident response steps for 72-hour breach notification readiness, including defined breach response workflows to maintain compliance.

Can I use this approach to review retention policies and anonymization rules for my data platform?

Yes, you can review retention policies and enforce data retention schedules, applying anonymization or deletion rules to ensure your data platform meets privacy-by-design requirements.