privacy-policy

Draft or review EU GDPR privacy disclosures from processing records.

6|2|Updated Apr 10, 2026
One-click install
npx skills add https://github.com/maltehedderich/master-class-agents --skill privacy-policy-maltehedderich
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: privacy-policy
Source: https://github.com/maltehedderich/master-class-agents/tree/main/skills/privacy-policy
Command: npx skills add https://github.com/maltehedderich/master-class-agents --skill privacy-policy-maltehedderich

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Draft, review, or debug EU privacy policies and GDPR transparency notices for SaaS products based on an accurate record of processing.

Core Features & Use Cases

  • Draft privacy disclosures mapped to data purposes, lawful bases, retention, recipients, and cross-border transfers.
  • Review and improve existing policies for clarity, regulatory alignment, and rights management.
  • Establish a reproducible process to document processing records and transfer mechanisms.

Quick Start

Draft a GDPR-compliant privacy policy for your product today using your documented processing record and transfer details.

Frequently Asked Questions about privacy-policy

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I draft a GDPR privacy policy for a SaaS product handling personal data across the EEA?

Draft a GDPR privacy policy by mapping your SaaS product's data purposes, lawful bases, retention periods, recipients, and cross-border transfers from an accurate record of processing. This approach ensures regulator-ready transparency notices with auditable evidence for EU data processing.

What should be included in a GDPR transparency notice for international data transfers?

A GDPR transparency notice for international data transfers must specify the transfer mechanisms, data purposes, lawful bases, retention criteria, and subprocessors involved. Documenting these elements from an accurate record of processing ensures compliance when handling personal data across the EEA.

How can I review an existing privacy policy for GDPR regulatory alignment?

Review an existing privacy policy for GDPR regulatory alignment by checking its clarity, data subject rights handling, and documented processing records. This process debugs EU privacy disclosures to ensure retention criteria and cross-border transfer mechanisms are accurately specified.

Does this privacy policy generation process work for SaaS products with multiple subprocessors?

Yes, the privacy policy generation process works for SaaS products with multiple subprocessors by mapping each recipient and cross-border transfer mechanism to your data processing record. This ensures all subprocessors are explicitly documented for GDPR compliance.

What is the best way to establish a reproducible process for documenting GDPR data processing records?

The best way to establish a reproducible process for documenting GDPR data processing records is to systematically map data purposes, lawful bases, retention, and recipients. This creates an auditable evidence trail that directly supports drafting regulator-ready privacy disclosures.

Why do I need an accurate record of processing to draft EU privacy disclosures?

You need an accurate record of processing to draft EU privacy disclosures because GDPR requires transparency notices to specify concrete retention criteria, data subject rights handling, and international transfer mechanisms. Reproducible documentation ensures your policy remains regulator-ready and auditable.