information-security-data-security

Guide data classification, encryption, and privacy compliance for GDPR and local laws.

110|19|Updated Feb 11, 2026
One-click install
npx skills add https://github.com/chendongqi/OPB-Skills --skill information-security-data-security
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: information-security-data-security
Source: https://github.com/chendongqi/OPB-Skills/tree/main/skills/information-security-data-security
Command: npx skills add https://github.com/chendongqi/OPB-Skills --skill information-security-data-security

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

The Data Security Assistant helps organizations protect sensitive data by guiding systematic classification, encryption, DLP, and privacy compliance throughout data lifecycles.

Core Features & Use Cases

  • Data classification: establishes a hierarchical labeling scheme and handling rules for L1-L4 data categories.
  • Policy creation and compliance: drafts data protection policies aligned with GDPR, China PIPL, and other regimes; supports risk assessments and audit readiness.
  • Enforcement guidance and audits: provides practical steps for encryption, de-identification, access control, and DLP monitoring; generates audit-ready reports.

Quick Start

Run a GDPR-ready data protection policy for a mid-sized SaaS company, specifying classification, encryption, and access controls.

Frequently Asked Questions about information-security-data-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I create a GDPR-ready data protection policy for my SaaS company?

To create a GDPR-ready data protection policy, you need systematic data classification, encryption rules, and access controls. This Skill drafts policies aligned with GDPR and China PIPL, establishing hierarchical L1-L4 labeling schemes and handling rules for mid-sized SaaS contexts.

What is the best way to classify sensitive data for privacy compliance?

Data classification for privacy compliance involves establishing a hierarchical labeling scheme with handling rules. This Skill guides creating L1-L4 data categories, mapping encryption and de-identification techniques, and ensuring procedural controls satisfy GDPR and local privacy laws.

How do I implement DLP monitoring and access control for data governance?

Implementing DLP monitoring and access control requires practical enforcement steps across the data lifecycle. This Skill provides guidance on applying encryption, de-identification, and DLP monitoring techniques to protect sensitive data and ensure audit readiness.

Can I generate audit-ready reports for GDPR and PIPL risk assessments?

You can generate audit-ready reports for GDPR and PIPL by conducting risk assessments and applying procedural controls. This Skill supports audit readiness by documenting classification schemes, encryption techniques, and DLP enforcement steps into structured reporting.

Does this data security approach work for mid-sized SaaS data governance workflows?

This data security approach suits mid-sized SaaS data governance workflows by integrating classification, policy drafting, and DLP. It requires no specific dependencies and provides practical steps for encryption, access control, and audit readiness across GDPR and local privacy regimes.

What are the limitations of using automated data classification for compliance?

Automated data classification for compliance requires careful mapping of L1-L4 labels to actual handling rules. This Skill guides the framework and policy drafting, but enforcement depends on applying the recommended encryption, de-identification, and DLP monitoring steps correctly.