gdpr-doc-review

Installation
SKILL.md

Reviewing Documentation of Processing

Overview

GDPR compliance depends on comprehensive, accurate, and current documentation. This skill provides methodology for reviewing RoPA, privacy notices, DPAs, DPIAs, consent records, and internal policies for internal consistency and alignment with actual processing.

Implementation Approach

Phase 1: Assessment

  1. Review current state against applicable GDPR articles.
  2. Identify gaps between current practices and requirements.
  3. Classify gaps by severity and regulatory risk.
  4. Document the assessment with evidence references.

Phase 2: Design

  1. Design measures to address identified gaps.
  2. Align measures with organisational capacity and risk appetite.
  3. Obtain DPO and stakeholder review of proposed measures.
  4. Create implementation timeline with milestones.

Phase 3: Implementation

  1. Execute the implementation plan according to priority.
  2. Document all measures implemented with evidence.
  3. Train relevant staff on new procedures and requirements.
  4. Validate implementation through testing or review.

Phase 4: Maintenance

  1. Schedule periodic reviews (minimum annual).
  2. Monitor for regulatory changes affecting the scope.
  3. Update measures in response to audit findings or incidents.
  4. Report on compliance status to the governance structure.
Related skills
Installs
1
GitHub Stars
73
First Seen
2 days ago