Skills
Website GDPR Compliance Audit
A practice-area skill: it carries legal knowledge — a doctrine, a regime, a review standard — and applies it to your material.
What this skill does
GDPR compliance audit of a website by a GDPR practitioner/DPO. Systematic assessment using a 10-section checklist: legal notice, hosting provider, forms, newsletter, privacy policy, cookies, passwords, trackers, processors and transfers outside the EU, and accessibility of data subject rights, plus a 22-item appendix covering Articles 13/14 GDPR. Produces a structured report (Markdown, optional .docx) with an overall compliance level, blocking issues, points requiring attention, priority recommendations, and cited regulatory sources (LCEN, GDPR, ePrivacy, CNIL decisions, EDPB, DPF). Tool-agnostic: automated browsing or fallback copy-paste mode. 7 decision trees for edge cases. The practitioner validates all statuses before the report is sent to the client. Technical analysis only, no legal advice.
- Website
- Gdpr
- Compliance
Free, and published by its author - not by HAQQ. The link leaves this site.
Where it runs, and how to install it
Agent Skills are a format, not a product feature: a folder with a SKILL.md and whatever files it needs. Nothing inside one is model-specific.
- Claude
- Drop the skill folder into ~/.claude/skills/, or upload it in Settings → Capabilities. Claude loads it when the description matches what you asked for.
- Claude Code
- Same folder, per-project instead: .claude/skills/ inside the repository, so the skill travels with the work rather than with the machine.
- Any agent that reads SKILL.md
- A skill is a folder with a SKILL.md and whatever files it needs. Nothing in the format is model-specific, so a runtime that reads the file reads the skill.
More from Hugo Salard
Skills that do related work
- DPDPA & GDPR Compliance ReviewPerforms structured compliance review, clause redlining, and drafting suggestions for legal documents (privacy policies, data processing agreements, vendor and
- Privacy Policy GeneratorGuide for drafting privacy policies compliant with GDPR. Includes CNIL 2020 recommendations, a reference template, and best practices. Use when drafting or revi
- AI Governance ReviewerConduct AI governance, legal-risk, privacy, compliance, procurement, or vendor-risk reviews of internal AI use cases, AI product features, LLM workflows, or thi
- Azerbaijan + EU Website Privacy Compliance AuditAudits a website for compliance with Azerbaijan's Law on Personal Data No. 998-IIIQ and, where applicable, EU GDPR plus ePrivacy/cookie consent rules. Inventori
- BACEN Compliance SentinelComprehensive guidance on compliance with Central Bank of Brazil regulations: CMN Resolution No. 4,893/2021 (Cybersecurity Policy), BCB Resolution No. 85/2021 (
- DPIA SentinelGDPR Data Protection Impact Assessment (DPIA) guidance under Article 35 GDPR, EDPB Guidelines WP 248 rev.01, EDPB Opinion 28/2024 (AI), and national SA blacklis