
Gdpr Dsgvo Expert
Run GDPR and German DSGVO compliance assessments, DPIAs, and audit-style checks before you store EU user data in production.
Install
npx skills add https://github.com/davila7/claude-code-templates --skill gdpr-dsgvo-expertWhat is this skill?
- GDPR/DSGVO compliance framework across lawful basis, individual rights, and accountability
- Structured implementation map for Arts. 6–21 style rights and governance areas
- Privacy impact assessment and internal or external audit workflows
- EU GDPR plus German DSGVO expertise for regulatory verification
- Use for compliance planning, privacy audits, and assessment before go-live
Adoption & trust: 499 installs on skills.sh; 27.8k GitHub stars; 3/3 security scanners passed (skills.sh audits); trending (+100% hot-view momentum).
Recommended Skills
Azure Compliancemicrosoft/azure-skills
Openclaw Secure Linux Cloudxixu-me/skills
Entra Agent Idmicrosoft/azure-skills
Firebase Security Rules Auditorfirebase/agent-skills
Firestore Security Rules Auditorfirebase/agent-skills
Skill Vetteruseai-pro/openclaw-skills-security
Journey fit
Common Questions / FAQ
Is Gdpr Dsgvo Expert safe to install?
skills.sh reports 3 of 3 security scanners passed. Review the Security Audits panel on this page before installing in production.
SKILL.md
READMESKILL.md - Gdpr Dsgvo Expert
# Senior GDPR/DSGVO Expert and Auditor Expert-level EU General Data Protection Regulation (GDPR) and German Datenschutz-Grundverordnung (DSGVO) compliance with comprehensive data protection auditing, privacy impact assessment, and regulatory compliance verification capabilities. ## Core GDPR/DSGVO Competencies ### 1. GDPR/DSGVO Compliance Framework Implementation Design and implement comprehensive data protection compliance programs ensuring systematic GDPR/DSGVO adherence. **GDPR Compliance Framework:** ``` GDPR/DSGVO COMPLIANCE IMPLEMENTATION ├── Legal Basis and Lawfulness │ ├── Lawful basis identification (Art. 6) │ ├── Special category data processing (Art. 9) │ ├── Criminal conviction data (Art. 10) │ └── Consent management and documentation ├── Individual Rights Implementation │ ├── Right to information (Art. 13-14) │ ├── Right of access (Art. 15) │ ├── Right to rectification (Art. 16) │ ├── Right to erasure (Art. 17) │ ├── Right to restrict processing (Art. 18) │ ├── Right to data portability (Art. 20) │ └── Right to object (Art. 21) ├── Accountability and Governance │ ├── Data protection policies and procedures │ ├── Records of processing activities (Art. 30) │ ├── Data protection impact assessments (Art. 35) │ └── Data protection by design and default (Art. 25) └── International Data Transfers ├── Adequacy decisions (Art. 45) ├── Standard contractual clauses (Art. 46) ├── Binding corporate rules (Art. 47) └── Derogations (Art. 49) ``` ### 2. Privacy Impact Assessment (DPIA) Implementation Conduct systematic Data Protection Impact Assessments ensuring comprehensive privacy risk identification and mitigation. **DPIA Process Framework:** 1. **DPIA Threshold Assessment** - Systematic large-scale processing evaluation - Special category data processing assessment - High-risk processing activity identification - **Decision Point**: Determine DPIA necessity per Article 35 2. **DPIA Execution Process** - **Processing Description**: Comprehensive data processing analysis - **Necessity and Proportionality**: Legal basis and purpose limitation assessment - **Privacy Risk Assessment**: Risk identification, analysis, and evaluation - **Mitigation Measures**: Risk reduction and residual risk management 3. **DPIA Documentation and Review** - DPIA report preparation and stakeholder consultation - Data Protection Officer (DPO) consultation and advice - Supervisory authority consultation (if required) - DPIA monitoring and review processes ### 3. Data Subject Rights Management Implement comprehensive data subject rights fulfillment processes ensuring timely and effective rights exercise. **Data Subject Rights Framework:** ``` DATA SUBJECT RIGHTS IMPLEMENTATION ├── Rights Request Management │ ├── Request receipt and verification │ ├── Identity verification procedures │ ├── Request assessment and classification │ └── Response timeline management ├── Rights Fulfillment Processes │ ├── Information provision (privacy notices) │ ├── Data access and copy provision │ ├── Data rectification and correction │ ├── Data erasure and deletion │ ├── Processing restriction implementation │ ├── Data portability and transfer │ └── Objection handling and opt-out ├── Complex Rights Scenarios │ ├── Conflicting rights balancing │ ├── Third-party rights considerations │ ├── Legal obligation conflicts │ └── Legitimate interest assessments └── Rights Response Documentation ├── Decision rationale documentation ├── Technical implementation evidence ├── Timeli