privacy-compliance

GitHub

用于构建和维护隐私合规项目,涵盖GDPR、CCPA等法规要求,提供数据映射、同意管理、DSR处理及隐私设计指南。

categories/finance-legal/privacy-compliance/SKILL.md cosmicstack-labs/mercury-agent-skills

Trigger Scenarios

需要建立或审计数据隐私合规体系 处理数据主体访问、删除或更正请求 实施隐私默认设计和数据最小化策略

Install

npx skills add cosmicstack-labs/mercury-agent-skills --skill privacy-compliance -g -y
More Options

Non-standard path

npx skills add https://github.com/cosmicstack-labs/mercury-agent-skills/tree/main/categories/finance-legal/privacy-compliance -g -y

Use without installing

npx skills use cosmicstack-labs/mercury-agent-skills@privacy-compliance

指定 Agent (Claude Code)

npx skills add cosmicstack-labs/mercury-agent-skills --skill privacy-compliance -a claude-code -g -y

安装 repo 全部 skill

npx skills add cosmicstack-labs/mercury-agent-skills --all -g -y

预览 repo 内 skill

npx skills add cosmicstack-labs/mercury-agent-skills --list

SKILL.md

Frontmatter
{
    "name": "privacy-compliance",
    "metadata": {
        "tags": [
            "privacy",
            "compliance",
            "gdpr",
            "ccpa",
            "hipaa",
            "data-protection"
        ],
        "author": "cosmicstack-labs",
        "version": "1.0.0",
        "category": "finance-legal"
    },
    "description": "GDPR, CCPA, HIPAA, data mapping, consent management, DSR handling, and privacy program management"
}

Privacy & Compliance

Build and maintain privacy compliance programs.

Major Regulations

Regulation Scope Key Requirements
GDPR EU residents Consent, data rights, breach notification, DPO
CCPA/CPRA California residents Right to know, delete, opt-out
HIPAA US healthcare PHI protection, BAAs, security rule
LGPD Brazil Similar to GDPR
PIPEDA Canada Consent, access, accuracy

Core Program Components

Data Mapping

  1. Catalog all data collected (PII, sensitive, financial)
  2. Document flow: collection → storage → processing → deletion
  3. Identify third-party processors and sub-processors
  4. Map legal basis for each processing activity
  5. Review and update quarterly

Consent Management

  • Obtain explicit, informed consent before collection
  • Record consent with timestamp and version
  • Make withdrawal as easy as giving consent
  • Refresh consent annually or when purpose changes

Data Subject Requests (DSR)

Request Type Timeline Process
Access 30 days Provide all data in machine-readable format
Deletion 30 days Delete + request deletion from third parties
Correction 30 days Fix inaccurate data
Portability 30 days Export in structured format
Objection 30 days Stop processing for specific purpose

Privacy by Design

  1. Proactive not reactive — embed privacy from the start
  2. Default settings should be most private
  3. Minimize data collection to what's necessary
  4. Encrypt everywhere (transit and at rest)
  5. Retain only as long as needed, then delete

Version History

  • 38e2523 Current 2026-07-05 19:39

Same Skill Collection

categories/ai-ml/agent-audit-logging/SKILL.md
categories/ai-ml/agent-handoff-protocols/SKILL.md
categories/ai-ml/agent-health-monitoring/SKILL.md
categories/ai-ml/agent-task-delegation/SKILL.md
categories/ai-ml/ai-agent-design/SKILL.md
categories/ai-ml/error-recovery-retry/SKILL.md
categories/ai-ml/memory-management/SKILL.md
categories/ai-ml/prompt-engineering/SKILL.md
categories/ai-ml/prompt-version-management/SKILL.md
categories/ai-ml/routerbase-model-gateway/SKILL.md
categories/ai-ml/token-budget-tracking/SKILL.md
categories/automation/daily-briefing/SKILL.md
categories/automation/screenshot/SKILL.md
categories/automation/shell-scripting/SKILL.md
categories/automation/twitter-account-manager/SKILL.md
categories/automation/workflow-automation/SKILL.md
categories/automation/x-twitter-automation/SKILL.md
categories/backend/api-design/SKILL.md
categories/backend/authentication-authorization/SKILL.md
categories/backend/caching-strategies/SKILL.md
categories/backend/database-design/SKILL.md
categories/backend/message-queues/SKILL.md
categories/backend/microservices/SKILL.md
categories/backend/nodejs-patterns/SKILL.md
categories/backend/python-patterns/SKILL.md
categories/backend/serverless-patterns/SKILL.md
categories/business/event-staffing-compliance/SKILL.md
categories/business/event-staffing-ordering/SKILL.md
categories/business/negotiation/SKILL.md
categories/business/startup-strategy/SKILL.md
categories/career/career-planning/SKILL.md
categories/career/interview-prep/SKILL.md
categories/career/linkedin-optimization/SKILL.md
categories/career/resume-writing/SKILL.md
categories/career/salary-negotiation/SKILL.md
categories/creative-personal-development/content-repurposer/SKILL.md
categories/creative-personal-development/daily-standup-journal/SKILL.md
categories/creative-personal-development/decision-matrix/SKILL.md
categories/creative-personal-development/idea-validator/SKILL.md
categories/creative-personal-development/meeting-note-summarizer/SKILL.md
categories/creative-personal-development/personal-branding-statement/SKILL.md
categories/creative-personal-development/storytelling-advisor/SKILL.md
categories/creative-personal-development/time-blocking-scheduler/SKILL.md
categories/data/data-pipeline/SKILL.md
categories/design/accessibility/SKILL.md
categories/design/ui-design-system/SKILL.md
categories/development/api-documentation/SKILL.md
categories/development/architecture-decision-records/SKILL.md
categories/development/clean-code/SKILL.md
categories/development/code-review/SKILL.md

Metadata

Files
0
Version
4c57cf2
Hash
9f2a4916
Indexed
2026-07-05 19:39

Accueil - Wiki
Copyright © 2011-2026 iteam. Current version is 2.155.2. UTC+08:00, 2026-08-08 16:35
浙ICP备14020137号-1 $Carte des visiteurs$