← 返回 Skills 市场
leooooooow

Privacy Compliance Guide

作者 LeroyCreates · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ✓ 安全检测通过
32
总下载
0
收藏
0
当前安装
1
版本数
在 OpenClaw 中安装
/install privacy-compliance-guide
功能描述
Audit ecommerce data practices against GDPR, CCPA, and other privacy regulations with actionable remediation steps.
使用说明 (SKILL.md)

Privacy Compliance Guide

Audit your ecommerce store's data collection, storage, and processing practices against major privacy regulations including GDPR, CCPA/CPRA, LGPD, PIPEDA, and other regional frameworks. This skill identifies compliance gaps in your current setup, prioritizes remediation actions by risk level, and generates the specific policy language and technical recommendations needed to bring your store into compliance. Privacy violations carry significant financial penalties and reputational damage, making proactive compliance essential for any ecommerce business handling customer data.

Use when

  • You are launching an ecommerce store and need to ensure your data collection practices, cookie banners, and privacy policies comply with GDPR, CCPA, or other applicable privacy regulations before going live
  • You have received a customer data subject access request (DSAR) or deletion request and need guidance on how to respond within regulatory timelines and documentation requirements
  • You are expanding into new markets like the EU or Brazil and need to understand what additional privacy obligations apply to your ecommerce operations in those jurisdictions
  • You want to audit your current Shopify, WooCommerce, or custom storefront for privacy compliance gaps including tracking pixels, third-party integrations, and email marketing data flows

What this skill does

This skill takes your ecommerce store's data practices as input and systematically evaluates them against the requirements of applicable privacy regulations. It maps every data touchpoint in your customer journey — from website tracking and cookie consent through checkout data collection, email marketing, and post-purchase analytics — against regulatory requirements. The analysis covers lawful bases for processing, data minimization principles, consent mechanisms, cross-border data transfer safeguards, data retention policies, and data subject rights fulfillment processes. It then produces a prioritized remediation plan with specific implementation steps, draft policy language, and technical configuration recommendations for common ecommerce platforms.

Inputs required

  • Store platform and integrations (required): Your ecommerce platform and key third-party tools that handle customer data. Example: "Shopify Plus with Klaviyo email, Meta Pixel, Google Analytics 4, Stripe payments, and Zendesk support"
  • Target markets (required): Countries or regions where you sell and ship products. Example: "United States, EU (Germany, France, Netherlands), United Kingdom, Canada"
  • Data collection points (required): Describe what customer data you collect and where. Example: "email at newsletter signup, name/address/phone at checkout, browsing behavior via GA4 and Meta Pixel, purchase history stored in Klaviyo"
  • Current privacy measures (optional): Describe any existing privacy policies, cookie consent tools, or compliance measures you already have in place
  • Specific concerns (optional): Any particular compliance questions or recent issues such as a DSAR you need to respond to, a regulatory inquiry, or expansion into a new jurisdiction

Output format

The output is structured into five sections. First, a Regulatory Applicability Matrix that identifies which privacy laws apply to your business based on your target markets and data practices, with a brief summary of each regulation's key requirements. Second, a Data Flow Audit that maps each data touchpoint in your customer journey against compliance requirements, flagging gaps with severity ratings of Critical, High, Medium, or Low. Third, a Remediation Action Plan listing specific steps to address each gap, ordered by priority, with estimated implementation effort and platform-specific instructions where applicable. Fourth, a Policy Language Kit containing draft privacy policy sections, cookie consent banner text, and data processing agreement clauses tailored to your specific situation. Fifth, a Compliance Maintenance Checklist with ongoing monitoring tasks, review schedules, and trigger events that should prompt a compliance reassessment.

Scope

  • Designed for: Ecommerce operators, store owners, DTC brand managers, and compliance officers at small to mid-size online businesses
  • Platform context: Platform-agnostic with specific guidance available for Shopify, WooCommerce, BigCommerce, Magento, and custom builds
  • Language: English

Limitations

  • Does not constitute legal advice — generated guidance should be reviewed by a qualified privacy attorney before implementation, especially for businesses handling sensitive personal data categories
  • Cannot access or scan your live website or store — relies on the data practices you describe as inputs, so completeness depends on the accuracy of your description
  • Covers major privacy frameworks like GDPR, CCPA, CPRA, LGPD, and PIPEDA but may not address highly specialized sector-specific regulations such as HIPAA for health products or COPPA for children's products without explicit input about those categories
安全使用建议
This appears safe to install as an advisory skill. Treat its output as general compliance guidance rather than legal advice, avoid pasting unnecessary real customer personal data, and have a qualified privacy attorney review final policies or DSAR responses.
功能分析
Type: OpenClaw Skill Name: privacy-compliance-guide Version: 1.0.0 The skill is a purely informational tool designed to provide privacy compliance guidance (GDPR, CCPA, etc.) based on user-provided descriptions of their ecommerce operations. It contains no executable code, scripts, or network-calling instructions, and explicitly states it cannot scan live websites. No indicators of malicious intent, data exfiltration, or prompt injection were found in SKILL.md or _meta.json.
能力标签
cryptocan-make-purchases
能力评估
Purpose & Capability
The stated purpose and SKILL.md content are coherent: it audits ecommerce data practices against privacy laws and produces remediation guidance and policy language.
Instruction Scope
Instructions are limited to asking the user for store platform, markets, data collection points, and current privacy measures; there are no directives to override user intent, run tools, or perform actions without approval.
Install Mechanism
There is no install spec, no code files, no required binaries, and no package or script execution.
Credentials
The skill does not request environment variables, credentials, local files, network access, or account permissions. Capability signals are not backed by actionable instructions or declared permissions in the artifacts.
Persistence & Privilege
No persistence, background execution, memory storage, credential use, or privilege escalation is described.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install privacy-compliance-guide
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /privacy-compliance-guide 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.0
Initial release.
元数据
Slug privacy-compliance-guide
版本 1.0.0
许可证 MIT-0
累计安装 0
当前安装数 0
历史版本数 1
常见问题

Privacy Compliance Guide 是什么?

Audit ecommerce data practices against GDPR, CCPA, and other privacy regulations with actionable remediation steps. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 32 次。

如何安装 Privacy Compliance Guide?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install privacy-compliance-guide」即可一键安装,无需额外配置。

Privacy Compliance Guide 是免费的吗?

是的,Privacy Compliance Guide 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。

Privacy Compliance Guide 支持哪些平台?

Privacy Compliance Guide 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 Privacy Compliance Guide?

由 LeroyCreates(@leooooooow)开发并维护,当前版本 v1.0.0。

💬 留言讨论