legal-compliance

Audit application changes for legal and data protection compliance.

2|Updated Oct 14, 2025
One-click install
npx skills add https://github.com/LuisDavidTF/Culina-Smart --skill legal-compliance
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: legal-compliance
Source: https://github.com/LuisDavidTF/Culina-Smart/tree/main/.agent/skills/legal-compliance
Command: npx skills add https://github.com/LuisDavidTF/Culina-Smart --skill legal-compliance

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Ensures application changes comply with Terms & Conditions, Privacy Policy (GDPR/ARCO), and data protection standards, reducing legal risk during development and deployment.

Core Features & Use Cases

  • Compliance checks before PR merges: Validates privacy, consent, and data handling align with policy requirements.
  • Audit-ready documentation: Generates a traceable checklist and reference steps for legal reviews.
  • Security posture verification: Ensures essential security headers and data minimization practices are enforced.

Quick Start

Review the change against the Compliance Checklist before merging. Reference the Mandatory Verification Steps to validate settings, database schemas, and headers as part of the release workflow.

Frequently Asked Questions about legal-compliance

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I enforce GDPR and data protection compliance before merging application changes?

Enforce GDPR compliance before merges by auditing privacy policies, data storage practices, and user-facing disclosures. This validates data minimization, user consent, and ARCO rights to ensure application changes align with legal requirements.

What is the best way to audit database schema modifications for privacy compliance?

Audit database schema modifications for privacy by verifying data minimization practices and security posture across development, staging, and production environments, ensuring traceable documentation for legal reviews.

How do I generate audit-ready documentation for data protection reviews?

Generate audit-ready documentation by validating settings, database schemas, and headers against a compliance checklist. This produces a traceable reference of mandatory verification steps for legal reviews of privacy and consent handling.

Can I use this to validate cookie consent and AI disclaimers in production?

Validate cookie consent and AI disclaimers in production by checking user-facing disclosures and security headers. This ensures application changes maintain required data protection standards and ARCO rights across environments.

What limitations should I expect when checking ARCO rights in a PR workflow?

When checking ARCO rights in a PR workflow, limitations include basic implementation depth that validates policy alignment and data handling but requires manual review of complex legal edge cases outside standard compliance checklists.