privacy-compliance

GitHub

用于构建和维护隐私合规计划,涵盖GDPR等法规、数据映射、同意管理及DSR处理,指导实施Privacy by Design原则。

categories/finance-legal/privacy-compliance/SKILL.md cosmicstack-labs/mercury-agent-skills

触发场景

需要符合GDPR或CCPA等隐私法规 进行数据映射或同意管理 处理数据主体请求

安装

npx skills add cosmicstack-labs/mercury-agent-skills --skill privacy-compliance -g -y
更多选项

非标准路径

npx skills add https://github.com/cosmicstack-labs/mercury-agent-skills/tree/main/categories/finance-legal/privacy-compliance -g -y

不安装直接使用

npx skills use cosmicstack-labs/mercury-agent-skills@privacy-compliance

指定 Agent (Claude Code)

npx skills add cosmicstack-labs/mercury-agent-skills --skill privacy-compliance -a claude-code -g -y

安装 repo 全部 skill

npx skills add cosmicstack-labs/mercury-agent-skills --all -g -y

预览 repo 内 skill

npx skills add cosmicstack-labs/mercury-agent-skills --list

SKILL.md

Frontmatter
{
    "name": "privacy-compliance",
    "metadata": {
        "tags": [
            "privacy",
            "compliance",
            "gdpr",
            "ccpa",
            "hipaa",
            "data-protection"
        ],
        "author": "cosmicstack-labs",
        "version": "1.0.0",
        "category": "finance-legal"
    },
    "description": "GDPR, CCPA, HIPAA, data mapping, consent management, DSR handling, and privacy program management"
}

Privacy & Compliance

Build and maintain privacy compliance programs.

Major Regulations

Regulation Scope Key Requirements
GDPR EU residents Consent, data rights, breach notification, DPO
CCPA/CPRA California residents Right to know, delete, opt-out
HIPAA US healthcare PHI protection, BAAs, security rule
LGPD Brazil Similar to GDPR
PIPEDA Canada Consent, access, accuracy

Core Program Components

Data Mapping

  1. Catalog all data collected (PII, sensitive, financial)
  2. Document flow: collection → storage → processing → deletion
  3. Identify third-party processors and sub-processors
  4. Map legal basis for each processing activity
  5. Review and update quarterly

Consent Management

  • Obtain explicit, informed consent before collection
  • Record consent with timestamp and version
  • Make withdrawal as easy as giving consent
  • Refresh consent annually or when purpose changes

Data Subject Requests (DSR)

Request Type Timeline Process
Access 30 days Provide all data in machine-readable format
Deletion 30 days Delete + request deletion from third parties
Correction 30 days Fix inaccurate data
Portability 30 days Export in structured format
Objection 30 days Stop processing for specific purpose

Privacy by Design

  1. Proactive not reactive — embed privacy from the start
  2. Default settings should be most private
  3. Minimize data collection to what's necessary
  4. Encrypt everywhere (transit and at rest)
  5. Retain only as long as needed, then delete

版本历史

  • 38e2523 当前 2026-07-05 19:39

同 Skill 集合

categories/ai-ml/agent-audit-logging/SKILL.md
categories/ai-ml/agent-handoff-protocols/SKILL.md
categories/ai-ml/agent-health-monitoring/SKILL.md
categories/ai-ml/agent-task-delegation/SKILL.md
categories/ai-ml/ai-agent-design/SKILL.md
categories/ai-ml/error-recovery-retry/SKILL.md
categories/ai-ml/memory-management/SKILL.md
categories/ai-ml/prompt-engineering/SKILL.md
categories/ai-ml/prompt-version-management/SKILL.md
categories/ai-ml/routerbase-model-gateway/SKILL.md
categories/ai-ml/token-budget-tracking/SKILL.md
categories/automation/daily-briefing/SKILL.md
categories/automation/screenshot/SKILL.md
categories/automation/shell-scripting/SKILL.md
categories/automation/twitter-account-manager/SKILL.md
categories/automation/workflow-automation/SKILL.md
categories/automation/x-twitter-automation/SKILL.md
categories/backend/api-design/SKILL.md
categories/backend/authentication-authorization/SKILL.md
categories/backend/caching-strategies/SKILL.md
categories/backend/database-design/SKILL.md
categories/backend/message-queues/SKILL.md
categories/backend/microservices/SKILL.md
categories/backend/nodejs-patterns/SKILL.md
categories/backend/python-patterns/SKILL.md
categories/backend/serverless-patterns/SKILL.md
categories/business/event-staffing-compliance/SKILL.md
categories/business/event-staffing-ordering/SKILL.md
categories/business/negotiation/SKILL.md
categories/business/startup-strategy/SKILL.md
categories/career/career-planning/SKILL.md
categories/career/interview-prep/SKILL.md
categories/career/linkedin-optimization/SKILL.md
categories/career/resume-writing/SKILL.md
categories/career/salary-negotiation/SKILL.md
categories/creative-personal-development/content-repurposer/SKILL.md
categories/creative-personal-development/daily-standup-journal/SKILL.md
categories/creative-personal-development/decision-matrix/SKILL.md
categories/creative-personal-development/idea-validator/SKILL.md
categories/creative-personal-development/meeting-note-summarizer/SKILL.md
categories/creative-personal-development/personal-branding-statement/SKILL.md
categories/creative-personal-development/storytelling-advisor/SKILL.md
categories/creative-personal-development/time-blocking-scheduler/SKILL.md
categories/data/data-pipeline/SKILL.md
categories/design/accessibility/SKILL.md
categories/design/ui-design-system/SKILL.md
categories/development/api-documentation/SKILL.md
categories/development/architecture-decision-records/SKILL.md
categories/development/clean-code/SKILL.md
categories/development/code-review/SKILL.md

元信息

文件数
0
版本
4c57cf2
Hash
9f2a4916
收录时间
2026-07-05 19:39

首页 - Wiki
Copyright © 2011-2026 iteam. Current version is 2.155.2. UTC+08:00, 2026-08-06 20:22
浙ICP备14020137号-1 $访客地图$