CtrlK
BlogDocsLog inGet started
Tessl Logo

scanning-for-gdpr-compliance

This skill enables Claude to scan applications and data systems for GDPR compliance issues. It identifies potential violations related to data protection, privacy rights, consent management, and other regulatory requirements. Use this skill when the user asks to "scan for GDPR compliance", check "GDPR compliance", or audit for "data privacy". The skill leverages the `gdpr-compliance-scanner` plugin to perform a comprehensive assessment and generate a detailed report.

92

1.25x
Quality

44%

Does it follow best practices?

Impact

97%

1.25x

Average score across 15 eval scenarios

SecuritybySnyk

Passed

No known issues

Optimize this skill with Tessl

npx tessl skill review --optimize ./backups/skills-migration-20251108-070147/plugins/security/gdpr-compliance-scanner/skills/gdpr-compliance-scanner/SKILL.md
SKILL.md
Quality
Evals
Security

Evaluation results

100%

35%

GDPR Compliance Review for Patient Portal

GDPR report structure and violation detection

Criteria
Without context
With context

Plugin referenced

0%

100%

Compliance score present

0%

100%

Critical gaps identified

100%

100%

Recommended actions provided

100%

100%

Data collection scope

100%

100%

Data storage scope

100%

100%

Data processing scope

100%

100%

Cookie consent gap

100%

100%

Encryption / security gap

100%

100%

Data processing agreement gap

100%

100%

88%

22%

GDPR Audit of E-Commerce Data Processing Activities

Data processing audit and gap prioritisation

Criteria
Without context
With context

Plugin referenced

0%

40%

Compliance score present

0%

100%

Critical gaps section

100%

100%

Gaps prioritised

100%

100%

Recommended actions

100%

100%

Encryption / security gap identified

100%

100%

Missing DPA gap identified

100%

100%

Data collection scope covered

100%

100%

Data processing scope covered

100%

100%

Data subject rights gap identified

100%

100%

97%

37%

Automating GDPR Compliance Checks in the Development Pipeline

Compliance scanning workflow and CI/CD integration

Criteria
Without context
With context

Plugin referenced in script

0%

100%

Plugin referenced in playbook

0%

100%

4-step workflow documented

71%

100%

Report elements specified

57%

100%

Scheduling / regularity covered

100%

100%

Integration with other tools

100%

100%

Context / specificity in script

100%

100%

Critical gaps prioritisation

77%

100%

Scan scope guidance

75%

75%

Specificity guidance in playbook

75%

50%

100%

21%

GDPR Remediation for a User Registration Service

Code generation integration for GDPR fixes

Criteria
Without context
With context

Plugin referenced in report

0%

100%

Compliance score present

25%

100%

Critical gaps section

62%

100%

Recommended actions provided

100%

100%

Fixed code file produced

100%

100%

Password hashing fixed

100%

100%

Third-party data sharing addressed

100%

100%

DPA gap identified

100%

100%

Encryption / security gap identified in report

100%

100%

Fix summary cross-references report

100%

100%

Special category data handling

100%

100%

98%

17%

Compliance Review of a Newsletter Subscription Platform

Consent management and subscriber rights assessment

Criteria
Without context
With context

Plugin referenced

0%

100%

Compliance score present

25%

100%

Critical gaps section

87%

75%

Gaps prioritised

100%

100%

Recommended actions provided

100%

100%

Unsubscribe / consent withdrawal gap

100%

100%

Data subject rights gap

100%

100%

Missing DPA gap

100%

100%

Sponsor data sharing gap

100%

100%

Retention policy gap

100%

100%

Consent scope gap

100%

100%

Data collection scope covered

100%

100%

95%

9%

GDPR Pre-Launch Assessment for a Customer Intelligence API

Context-specific API and data pipeline assessment

Criteria
Without context
With context

Plugin referenced

0%

70%

Context documented in report

100%

100%

Compliance score present

50%

75%

Critical gaps prioritised

100%

100%

Recommended actions present

100%

100%

US data transfer gap

100%

100%

Missing DPA gaps identified

100%

100%

No client DPA gap identified

100%

100%

Data subject rights gap

100%

100%

Demographic inference gap

100%

100%

Data collection scope covered

100%

100%

Data processing scope covered

100%

100%

98%

18%

GDPR Compliance Assessment: FitTrack Mobile App

Special-category health data and mobile SDK assessment

Criteria
Without context
With context

Plugin referenced

0%

83%

Compliance score present

25%

100%

Critical gaps section

87%

100%

Gaps prioritised

87%

100%

Recommended actions provided

100%

100%

Special-category data gap

100%

100%

Missing DPA gaps identified

100%

100%

Facebook SDK unlawful transfer gap

100%

100%

GPS data international transfer gap

100%

100%

Data subject rights gap

100%

100%

Security gap identified

100%

100%

Remediation plan produced

100%

100%

100%

10%

GDPR Compliance Audit: PeopleOps HR Platform

HR employment data and EU-to-US international transfer assessment

Criteria
Without context
With context

Plugin referenced

0%

100%

Compliance score present

100%

100%

Critical gaps section

100%

100%

Gaps prioritised

100%

100%

Recommended actions provided

100%

100%

International transfer gap

100%

100%

Missing DPA gaps identified

100%

100%

Special-category data gap

100%

100%

Lawful basis / privacy notice gap

100%

100%

Data subject rights gap

100%

100%

Security gap identified

100%

100%

Executive summary produced

100%

100%

100%

10%

Integrated Privacy and Security Review: CareConnect Patient Portal

Holistic security posture via GDPR and static analysis integration

Criteria
Without context
With context

Plugin referenced in GDPR results

0%

100%

SAST tool or analysis present

100%

100%

Integrated report produced

100%

100%

GDPR compliance score present

100%

100%

Critical gaps prioritised

100%

100%

GDPR recommended actions present

100%

100%

SQL injection vulnerability identified

100%

100%

MD5 password hashing flagged

100%

100%

Unauthenticated endpoint gap

100%

100%

Google Analytics consent gap

100%

100%

Missing DPA gap identified

100%

100%

Special-category data gap

100%

100%

Remediation roadmap produced

100%

100%

Repository
jeremylongshore/claude-code-plugins-plus-skills
Evaluated
Agent
Claude Code
Model
Claude Sonnet 4.6

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.