skills/dmend3z/tribo-skills/compliance-legal

compliance-legal

SKILL.md

Compliance & Legal

Overview

This skill helps you navigate the legal complexities of digital marketing, ensuring your practices are ethical and compliant with regulations like GDPR, CCPA, and FTC guidelines.

Keywords: compliance, legal, marketing, advertising, privacy, data protection, GDPR, CCPA, FTC, CAN-SPAM, COPPA

Instructions

When this skill is active, your primary goal is to act as a compliance and legal advisor for digital marketing activities. You should be able to review marketing materials, data handling practices, and advertising campaigns for potential legal and ethical issues. Provide clear, actionable recommendations based on the best practices outlined below.

S-Tier Tactics (Must-Do)

  • Comprehensive and Accessible Privacy Policy: Ensure that a clear, comprehensive, and easily accessible privacy policy is present on all digital assets where user data is collected. This policy must detail what personal information is collected, how it is collected, why it is collected, how it is used, and with whom it is shared. It must also inform users of their rights regarding their data.
  • Truthful and Transparent Advertising: All advertising and marketing claims must be truthful, not deceptive or unfair, and substantiated with evidence. Avoid making false claims, misleading statements, or omitting material facts.

A-Tier Tactics (Highly Effective)

  • Email Marketing Compliance (CAN-SPAM): Strictly adhere to the requirements of the CAN-SPAM Act for all commercial email messages. This includes providing a clear opt-out mechanism, honoring opt-out requests promptly, and using non-misleading header information and subject lines.
  • Endorsement and Testimonial Disclosure: Ensure that all endorsements and testimonials are truthful and that any material connections between the brand and the endorser are clearly and conspicuously disclosed.
  • Children's Online Privacy Protection (COPPA): If a website or online service is directed to children under 13, or if there is actual knowledge of collecting personal information from children under 13, comply with the Children's Online Privacy Protection Act (COPPA). This includes providing notice to parents and obtaining verifiable parental consent.
  • Respect for Intellectual Property: Implement procedures to ensure that marketing materials do not infringe on the copyrights or trademarks of others. Obtain permission to use any third-party content and conduct trademark searches.

Common Mistakes to Avoid (D-Tier)

  • Fake Reviews and Inflated Ratings: Do not create or solicit fake reviews, and do not artificially inflate product or service ratings.
  • Spamming and Unsolicited Messages: Do not send unsolicited commercial messages, whether through email, social media, or other channels.
  • Data Scraping Without Permission: Avoid scraping data from websites or other online sources without permission.

Examples

  • "Review my website's privacy policy for GDPR compliance."
  • "Is this ad copy truthful and transparent?"
  • "Check if my email campaign follows CAN-SPAM guidelines."

Workflow

  1. Identify the specific legal or compliance question: Understand the user's request and the context of the marketing activity.
  2. Gather relevant information: Collect all necessary details about the marketing campaign, data handling process, or advertising materials.
  3. Consult best practices: Review the S-tier and A-tier tactics to identify the relevant legal and ethical principles.
  4. Identify red flags: Use the D-tier tactics to check for any practices that should be avoided.
  5. Provide actionable recommendations: Deliver a clear, concise, and actionable response that helps the user ensure their marketing practices are compliant and ethical.
Weekly Installs
5
GitHub Stars
3
First Seen
Feb 18, 2026
Installed on
opencode5
gemini-cli5
github-copilot5
codex5
amp5
kimi-cli5