privacy-review

Audit data privacy and map PII flows across systems and integrations.

13|3|Updated Mar 27, 2026
One-click install
npx skills add https://github.com/heaptracetechnology/heaptrace-skills --skill privacy-review-heaptracetechnology
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: privacy-review
Source: https://github.com/heaptracetechnology/heaptrace-skills/tree/main/compliance/privacy-review
Command: npx skills add https://github.com/heaptracetechnology/heaptrace-skills --skill privacy-review-heaptracetechnology

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill helps security and privacy teams identify where personal data travels, exposes PII, or falls outside regulatory requirements by mapping data flows and auditing data handling practices.

Core Features & Use Cases

  • Map data flows and identify PII exposure across systems, logs, and third-party integrations
  • Generate a privacy risk assessment with concrete remediation steps aligned to GDPR, CCPA, LGPD, HIPAA, FERPA, and other frameworks
  • Support DPIAs and consent enforcement checks during feature launches and data-sharing engagements

Quick Start

Run a privacy risk assessment across your current data flows and generate actionable remediation steps.

Frequently Asked Questions about privacy-review

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit data privacy and identify PII exposure across my system?

To audit data privacy and identify PII exposure, you must map data flows across your systems, logs, and third-party integrations to pinpoint where personal data travels and falls outside regulatory requirements.

How do I run a privacy risk assessment for a new feature launch?

Running a privacy risk assessment for a feature launch requires mapping PII flows, reviewing data handling and logging practices, checking consent enforcement, and generating concrete remediation steps aligned with frameworks like GDPR and CCPA.

What is the best way to check GDPR and CCPA compliance for third-party data sharing?

Checking GDPR and CCPA compliance for third-party data sharing involves auditing data handling practices across integrations and generating a formal privacy risk assessment with remediation guidance to address regulatory gaps.

Can I use a privacy review to support DPIAs and consent enforcement checks?

Yes, a privacy review supports Data Protection Impact Assessments (DPIAs) and consent enforcement checks by mapping PII flows and reviewing data handling practices during feature launches and data-sharing engagements.

Does a data privacy audit cover multi-jurisdictional regulatory frameworks like HIPAA and LGPD?

A data privacy audit covers multi-jurisdictional regulatory frameworks including GDPR, CCPA, LGPD, HIPAA, and FERPA by mapping data flows and generating remediation steps aligned to each specific regulation.

Why does my personal data mapping not expose PII risks in third-party integrations?

Personal data mapping fails to expose PII risks in third-party integrations if it does not thoroughly review data handling practices and log data flows across the entire system to identify regulatory gaps.