regulatory-audit-generator

Generates structured compliance checklists for GDPR, PIPL, and data protection regulations.

4.6k|462|Updated Jun 21, 2025
One-click install
npx skills add https://github.com/zebbern/claude-code-guide --skill regulatory-audit-generator
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: regulatory-audit-generator
Source: https://github.com/zebbern/claude-code-guide/tree/main/skills/regulatory-audit-generator
Command: npx skills add https://github.com/zebbern/claude-code-guide --skill regulatory-audit-generator

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Businesses launching new features or processing user data often struggle to identify which privacy and data regulations apply to them and what specific compliance obligations they must meet, risking fines and service shutdowns.

Core Features & Use Cases

  • Regulation Identification: Maps business scenarios to applicable laws including GDPR, PIPL, Data Security Law, Cybersecurity Law, and Advertising Law.
  • Structured Checklist Generation: Produces checklists with check items, legal basis citations, risk levels, and remediation advice.
  • Risk Prioritization: Classifies findings into P0-P3 remediation priorities based on severity and compliance status.
  • Use Case: A product team launching a user profiling feature describes their data flows, and receives a complete compliance checklist covering automated decision-making disclosure, PIIA requirements, and opt-out mechanisms.

Quick Start

Ask the agent to run a compliance check for your business scenario, such as "create a GDPR and PIPL compliance checklist for our new user profiling feature."

Frequently Asked Questions about regulatory-audit-generator

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I create a GDPR compliance checklist for a new feature?

Describe your business scenario including data types, user regions, and data flows. The skill identifies applicable GDPR requirements such as lawful basis, DPIA, and data subject rights, then outputs a checklist with legal basis citations and risk levels.

What regulations does a PIPL compliance check cover?

PIPL checks cover informed consent, data minimization, sensitive personal information handling, automated decision-making transparency, and cross-border data transfer requirements. The skill also maps related laws like the Data Security Law and Cybersecurity Law when applicable.

Does this compliance checklist replace legal advice?

No, the checklist is for reference only and does not constitute legal advice. The skill explicitly recommends consulting a qualified attorney for significant compliance decisions and verifying regulations against the latest versions.

How are compliance risks prioritized in the checklist?

Risks are classified as high, medium, or low based on legal consequences, then mapped to P0-P3 remediation priorities. P0 items involve high-risk non-compliance requiring immediate action, while P3 items are low-risk ongoing optimizations.

What information do I need to provide for a compliance assessment?

You should provide your business description, target user regions and demographics, data types collected, data storage and sharing flows, business stage, and existing compliance measures. The agent proactively asks follow-up questions if information is missing.