pia-generation

Draft a Turkish KVKK-compliant VKED/PIA with sections for summary, parties, legal basis, and transfers.

100|16|Updated May 13, 2026
One-click install
npx skills add https://github.com/ZekaiSuni/claude-for-legal-turkish --skill pia-generation-zekaisuni
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: pia-generation
Source: https://github.com/ZekaiSuni/claude-for-legal-turkish/tree/main/privacy-legal/skills/pia-generation
Command: npx skills add https://github.com/ZekaiSuni/claude-for-legal-turkish --skill pia-generation-zekaisuni

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

VKED/PIA hazırlama sürecinde veri işleme faaliyetinizi Türk KVKK yaklaşımına uygun şekilde yapılandırıp; veri kategorileri, hukuki sebep, yurt dışı aktarım ve güvenlik/risk adımlarını tek bir taslakta toplamanıza yardımcı olur.

Core Features & Use Cases

  • VKED/PIA taslağı üretimi: Veri işleme faaliyeti için faaliyet özeti, rol/taraflar, hukuki sebep, aktarım ve saklama-imha bölümleriyle birlikte taslak oluşturur.
  • KVKK odaklı şartlandırma: KVKK m.5/m.6 çerçevesinde veri kategorisi–amaç–şart–aydınlatma–açık rıza ayrımını çalışır hale getirir; “her durumda zorunlu” gibi yabancı terminolojileri otomatik varsaymaz.
  • Risk ve aksiyon planı iskeleti: Olasılık/etki/seri̇leşme (seviye) mantığıyla risk azaltım adımları ve karar/koşullar kısmını düzenler.
  • Eskalasyon uyarıları: Özel nitelikli veri, çocuk verisi, çalışan izleme, sağlık/biometri/konum, AI/model eğitimi, büyük ölçekli izleme, yurt dışı aktarım ve benzeri yüksek risk senaryolarda hukuk + güvenlik + ilgili iş sahibi onayı gerekliliğini hatırlatır.

Quick Start

Use /pia-generation and describe the new data processing activity, including data categories, roles (data controller/processor), purposes, any international data transfers, and retention/erasure details.

Frequently Asked Questions about pia-generation

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I generate a KVKK privacy impact assessment for a new data processing activity?

A KVKK privacy impact assessment is drafted by structuring your data processing activity summary, parties, legal basis, notices, consent, transfer, and retention details into a complete sectioned document with risk evaluation.

How does cross-border data transfer mapping work under VKED compliance?

Cross-border data transfer mapping under VKED compliance identifies the transfer mechanisms, target countries, and involved parties, structuring them within the privacy impact assessment to ensure legal conditions are met.

When do I need a privacy impact assessment for special category personal data under KVKK?

You need a privacy impact assessment for special category personal data under KVKK when processing health, biometric, location, or children's data, which triggers escalation warnings requiring legal and security approvals.

How do I map data controller and processor roles for a KVKK VKED document?

Mapping data controller and processor roles for a KVKK VKED document involves defining the parties, their responsibilities, and the legal basis under KVKK Articles 5 and 6 within the activity summary section.

Can I use this to structure risk evaluation and mitigation steps for data mapping?

Yes, you can structure risk evaluation and mitigation steps for data mapping by applying probability, impact, and severity logic to generate risk reduction actions and decision conditions within the assessment draft.

What are the limitations of using automated KVKK compliance templates for employee monitoring?

Automated KVKK compliance templates for employee monitoring do not assume foreign terminology like 'always necessary' and require explicit legal, security, and business owner approval due to high-risk escalation triggers.