pia-generation

Generate house-formatted Privacy Impact Assessments with citations and risk tables.

Updated May 26, 2026
One-click install
npx skills add https://github.com/yachela/claude-for-legal-ar --skill pia-generation-yachela
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: pia-generation
Source: https://github.com/yachela/claude-for-legal-ar/tree/main/privacy-legal/skills/pia-generation
Command: npx skills add https://github.com/yachela/claude-for-legal-ar --skill pia-generation-yachela

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill turns a new product feature or processing activity into a structured, review-ready Privacy Impact Assessment (PIA) your team can sign off on without starting from scratch.

Core Features & Use Cases

  • PIA necessity check with citations: Validates whether a PIA is actually needed using the configured mandatory-assessment triggers and regime-specific requirements.
  • Guided intake for product teams: Collects the feature purpose, data categories, data flow, legal basis/regime checks, storage/retention, and access/sharing details.
  • House-style PIA output with risk framing: Produces the PIA in the team’s learned format, cross-checks privacy policy consistency, and includes a conditions-and-owners handoff for sign-off.

Quick Start

Run /privacy-legal:pia-generation with the feature name or a short description of the new processing activity.

Frequently Asked Questions about pia-generation

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
When do I need a privacy impact assessment for a new data processing flow?

A privacy impact assessment is required when a new feature or processing activity triggers mandatory regime-specific thresholds. This Skill validates necessity by checking configured assessment triggers and jurisdiction-specific requirements with primary-source citations before generating documentation.

How do I generate a privacy impact assessment for a product feature?

To generate a privacy impact assessment, provide the feature name or processing description. The Skill guides intake for data categories, purposes, lawful-basis checks, sharing, and retention, then outputs a structured, review-ready document formatted for attorney sign-off.

Does a privacy impact assessment include risk and mitigation tables?

Yes, a privacy impact assessment includes structured risk-and-mitigation tables with named owners. The Skill produces these alongside jurisdiction-aware research, privacy policy consistency diffs, and a sign-off recommendation suitable for attorney review.

Can I use a privacy impact assessment to check privacy policy compliance?

Yes, this privacy impact assessment checks privacy policy compliance by cross-referencing the documented data processing flow against existing policies. It generates consistency diffs to highlight any gaps between the new feature and current privacy statements.

What is the best way to document lawful basis and data retention in a legal workflow?

The best way to document lawful basis and data retention in a legal workflow is through a structured privacy impact assessment. This Skill captures those specific data categories and regime checks, reconciling them with prior outputs to ensure consistent legal documentation across features.