This skill enables Claude to scan applications and data systems for GDPR compliance issues. It identifies potential violations related to data protection, privacy rights, consent management, and other regulatory requirements. Use this skill when the user asks to "scan for GDPR compliance", check "GDPR compliance", or audit for "data privacy". The skill leverages the `gdpr-compliance-scanner` plugin to perform a comprehensive assessment and generate a detailed report.
92
44%
Does it follow best practices?
Impact
97%
1.25xAverage score across 15 eval scenarios
Passed
No known issues
Optimize this skill with Tessl
npx tessl skill review --optimize ./backups/skills-migration-20251108-070147/plugins/security/gdpr-compliance-scanner/skills/gdpr-compliance-scanner/SKILL.mdGDPR report structure and violation detection
Plugin referenced
0%
100%
Compliance score present
0%
100%
Critical gaps identified
100%
100%
Recommended actions provided
100%
100%
Data collection scope
100%
100%
Data storage scope
100%
100%
Data processing scope
100%
100%
Cookie consent gap
100%
100%
Encryption / security gap
100%
100%
Data processing agreement gap
100%
100%
Data processing audit and gap prioritisation
Plugin referenced
0%
40%
Compliance score present
0%
100%
Critical gaps section
100%
100%
Gaps prioritised
100%
100%
Recommended actions
100%
100%
Encryption / security gap identified
100%
100%
Missing DPA gap identified
100%
100%
Data collection scope covered
100%
100%
Data processing scope covered
100%
100%
Data subject rights gap identified
100%
100%
Compliance scanning workflow and CI/CD integration
Plugin referenced in script
0%
100%
Plugin referenced in playbook
0%
100%
4-step workflow documented
71%
100%
Report elements specified
57%
100%
Scheduling / regularity covered
100%
100%
Integration with other tools
100%
100%
Context / specificity in script
100%
100%
Critical gaps prioritisation
77%
100%
Scan scope guidance
75%
75%
Specificity guidance in playbook
75%
50%
Code generation integration for GDPR fixes
Plugin referenced in report
0%
100%
Compliance score present
25%
100%
Critical gaps section
62%
100%
Recommended actions provided
100%
100%
Fixed code file produced
100%
100%
Password hashing fixed
100%
100%
Third-party data sharing addressed
100%
100%
DPA gap identified
100%
100%
Encryption / security gap identified in report
100%
100%
Fix summary cross-references report
100%
100%
Special category data handling
100%
100%
Consent management and subscriber rights assessment
Plugin referenced
0%
100%
Compliance score present
25%
100%
Critical gaps section
87%
75%
Gaps prioritised
100%
100%
Recommended actions provided
100%
100%
Unsubscribe / consent withdrawal gap
100%
100%
Data subject rights gap
100%
100%
Missing DPA gap
100%
100%
Sponsor data sharing gap
100%
100%
Retention policy gap
100%
100%
Consent scope gap
100%
100%
Data collection scope covered
100%
100%
Context-specific API and data pipeline assessment
Plugin referenced
0%
70%
Context documented in report
100%
100%
Compliance score present
50%
75%
Critical gaps prioritised
100%
100%
Recommended actions present
100%
100%
US data transfer gap
100%
100%
Missing DPA gaps identified
100%
100%
No client DPA gap identified
100%
100%
Data subject rights gap
100%
100%
Demographic inference gap
100%
100%
Data collection scope covered
100%
100%
Data processing scope covered
100%
100%
Special-category health data and mobile SDK assessment
Plugin referenced
0%
83%
Compliance score present
25%
100%
Critical gaps section
87%
100%
Gaps prioritised
87%
100%
Recommended actions provided
100%
100%
Special-category data gap
100%
100%
Missing DPA gaps identified
100%
100%
Facebook SDK unlawful transfer gap
100%
100%
GPS data international transfer gap
100%
100%
Data subject rights gap
100%
100%
Security gap identified
100%
100%
Remediation plan produced
100%
100%
HR employment data and EU-to-US international transfer assessment
Plugin referenced
0%
100%
Compliance score present
100%
100%
Critical gaps section
100%
100%
Gaps prioritised
100%
100%
Recommended actions provided
100%
100%
International transfer gap
100%
100%
Missing DPA gaps identified
100%
100%
Special-category data gap
100%
100%
Lawful basis / privacy notice gap
100%
100%
Data subject rights gap
100%
100%
Security gap identified
100%
100%
Executive summary produced
100%
100%
Holistic security posture via GDPR and static analysis integration
Plugin referenced in GDPR results
0%
100%
SAST tool or analysis present
100%
100%
Integrated report produced
100%
100%
GDPR compliance score present
100%
100%
Critical gaps prioritised
100%
100%
GDPR recommended actions present
100%
100%
SQL injection vulnerability identified
100%
100%
MD5 password hashing flagged
100%
100%
Unauthenticated endpoint gap
100%
100%
Google Analytics consent gap
100%
100%
Missing DPA gap identified
100%
100%
Special-category data gap
100%
100%
Remediation roadmap produced
100%
100%
13d35b8
Table of Contents
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.