seguridad-privacidad-compliance

Generates security and compliance profiles for applications with sensitive data.

Updated Nov 27, 2025
One-click install
npx skills add https://github.com/HenderOrlando/booklyapp --skill seguridad-privacidad-compliance
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: seguridad-privacidad-compliance
Source: https://github.com/HenderOrlando/booklyapp/tree/main/.windsurf/skills/seguridad-privacidad-compliance
Command: npx skills add https://github.com/HenderOrlando/booklyapp --skill seguridad-privacidad-compliance

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill ensures applications are built with security, privacy, and regulatory compliance as core principles from the outset, preventing costly breaches and legal issues.

Core Features & Use Cases

  • Security by Design: Implements threat modeling, OWASP controls, and secure secrets management.
  • Privacy by Design: Enforces data minimization, purpose limitation, and secure data handling (PII, PHI, financial).
  • Compliance Assurance: Addresses GDPR, local regulations, and payment card industry standards.
  • Use Case: Before developing a new feature handling user financial data, use this Skill to generate a Security & Compliance Profile, identify potential threats, and define necessary encryption and access controls.

Quick Start

Use the seguridad-privacidad-compliance skill to generate a Security & Compliance Profile for a new feature handling EU user PII.

Frequently Asked Questions about seguridad-privacidad-compliance

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I implement security by design and threat modeling for a new application feature?

Security by design is implemented by generating a Security & Compliance Profile that applies OWASP controls, threat modeling, and secure secrets management across all development phases to mitigate risks.

What is privacy by design and how does it apply to handling PII and financial data?

Privacy by design enforces data minimization, purpose limitation, and secure data handling to protect PII, PHI, and financial data classes according to defined risk tiers and privacy principles.

How do I ensure GDPR compliance and regulatory adherence when processing EU user data?

GDPR compliance is ensured by defining explicit compliance targets and regulatory adherence profiles that address local regulations, data protection laws, and payment card industry standards for EU users.

Can I use this approach to define encryption and access controls for user financial data?

Yes, you can use this approach to generate a Security & Compliance Profile that identifies potential threats and defines necessary encryption and access controls for features handling user financial data.

Do I need to define security profiles and threat landscapes before developing secure applications?

Yes, explicit definition of security profiles, threat landscapes, and compliance targets is required to effectively mitigate risks, prevent fraud, and ensure secure-by-design application development.