reg-gap-analysis

Generate regulation-to-privacy-policy gap analyses with remediation trackers.

Updated May 19, 2026
One-click install
npx skills add https://github.com/jrhueiueng/codex-for-legal --skill reg-gap-analysis-jrhueiueng
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: reg-gap-analysis
Source: https://github.com/jrhueiueng/codex-for-legal/tree/main/plugins/jrhueiueng/codex-for-legal/skills/privacy-legal__reg-gap-analysis
Command: npx skills add https://github.com/jrhueiueng/codex-for-legal --skill reg-gap-analysis-jrhueiueng

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps you determine whether a new or changed privacy regulation affects your current privacy policy and practices, and it turns that difference into an actionable remediation plan.

Core Features & Use Cases

  • Regulation-to-policy diffing: Scopes applicability (jurisdiction, thresholds, sector, effective/enforcement dates) and extracts substantive requirements as discrete items.
  • Gap list with evidence mapping: Compares each extracted requirement against what your configured privacy policy and PIA-documented practices already commit to, producing None/Partial/Full gaps.
  • Remediation planning and prioritization: Produces a prioritized plan with owners and due dates, and saves a dated work product for auditability.

Quick Start

Run /privacy-legal:reg-gap-analysis and provide the regulation name or paste the regulation text so the output includes a prioritized gap list and remediation plan.

Frequently Asked Questions about reg-gap-analysis

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I check if a new privacy regulation affects my current privacy policy?

Regulatory gap analysis scopes regulatory applicability by jurisdiction and effective dates, extracting substantive requirements to diff against your current privacy commitments and producing prioritized gap findings.

What is the best way to create a remediation plan for data protection compliance gaps?

A remediation plan for data protection gaps is generated by prioritizing remediation actions by deadline and effort-to-impact, outputting a dated tracker including owner and due-date tables for auditability.

How do I compare updated regulatory guidance against my existing DSAR processes?

Comparing updated regulatory guidance against DSAR processes involves extracting substantive regulatory requirements and diffing them against your documented privacy practices to identify None, Partial, or Full compliance gaps.

Do I need a configured privacy profile to run a regulatory gap analysis?

Yes, regulatory gap analysis requires reading a configured privacy profile from the local CLAUDE.md path to accurately compare extracted regulatory requirements against your existing privacy policy and PIA-documented practices.

Can I paste regulatory text directly to assess privacy compliance changes?

Yes, you can paste regulatory text directly to assess compliance changes, allowing the analysis to extract substantive requirements and evaluate their impact on your current privacy policy and documented DSAR processes.

How are compliance gaps prioritized when analyzing new privacy regulations?

Compliance gaps are prioritized by evaluating both the enforcement deadline and the effort-to-impact ratio, producing a remediation plan that assigns owners and due dates to ensure timely regulatory compliance.