privacy-policy

Draft privacy policies for software products across GDPR, CCPA/CPRA, and COPPA contexts.

285|39|Updated Mar 16, 2026
One-click install
npx skills add https://github.com/shawnpang/startup-founder-skills --skill privacy-policy-shawnpang
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: privacy-policy
Source: https://github.com/shawnpang/startup-founder-skills/tree/main/skills/privacy-policy
Command: npx skills add https://github.com/shawnpang/startup-founder-skills --skill privacy-policy-shawnpang

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Drafting and maintaining privacy policies across jurisdictions can be time-consuming and error-prone, leaving you exposed to regulatory risk.

Core Features & Use Cases

  • Data inventory guidance: Map collected data across forms, integrations, and user flows to inform policy content.
  • Jurisdiction-aware drafting: Align policy sections with GDPR, CCPA/CPRA, COPPA, and other applicable laws.
  • Implementation guidance: Provide practical steps, templates, and a compliance summary to enable fast publication.

Quick Start

Provide a draft privacy policy tailored to your product using the 15-section template and your data inventory.

Frequently Asked Questions about privacy-policy

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I draft a privacy policy for a SaaS app that complies with GDPR and CCPA?

Drafting a privacy policy for SaaS requires mapping your data inventory and tailoring sections to GDPR, CCPA, and CPRA contexts using a structured 15-section framework that covers legal basis assessment and third-party disclosures.

What is data inventory mapping and when do I need it for privacy compliance?

Data inventory mapping tracks collected user data across forms and integrations. It is required when drafting privacy policies for mobile apps or websites to accurately populate policy sections and assess legal basis under regulations like COPPA.

Can I use a single privacy policy for my website across multiple jurisdictions?

Yes, jurisdiction-aware drafting aligns policy sections across GDPR, CCPA, and COPPA contexts. By mapping data inventory and international transfer requirements, you can produce one comprehensive policy covering multiple regulatory frameworks.

What's the best way to structure a privacy policy for international data transfers?

The best way to structure international data transfer disclosures is using a 15-section framework that integrates data inventory mapping and legal basis assessment to ensure compliance with GDPR international transfer requirements.

How do I include third-party disclosures in a mobile app privacy policy?

Include third-party disclosures by mapping your data integrations into a data inventory, then translating those third-party data sharing practices into the specific sections of a structured 15-section privacy policy framework.

Do I need a separate privacy policy for COPPA compliance if my app collects children's data?

COPPA compliance requires specific data inventory mapping and legal basis assessment for children's data. Jurisdiction-aware drafting ensures your privacy policy addresses COPPA contexts alongside GDPR and CCPA within the 15-section framework.