Advanced
GDPR data processing inventory: systems, data types, legal bases
Creates a GDPR processing inventory and maps data types to purposes, legal bases, and retention. Useful for privacy compliance and audit readiness.
Create a GDPR data processing inventory for {organization_name}.
Inputs:
- Systems/applications list: {systems_list}
- Personal data types collected: {data_types}
- Processing purposes: {purposes}
- Legal bases (if known): {legal_bases}
- Data sharing/third parties: {third_parties}
- Retention policies: {retention_policies}
Output:
1) Inventory table: system, data types, purpose, legal basis, recipients, retention, security controls, owner.
2) Gaps and risks (missing legal basis, retention unclear, third-party contracts).
3) Action plan to remediate.
4) Documentation suggestions (RoPA, DPAs, DPIAs where needed).
This is not legal advice; coordinate with privacy counsel.Related Prompts
Compliance & Regulatory
IntermediateGrant compliance monitoring plan with testing cadence
Designs a grant compliance monitoring plan including testing cadence and documentation. Useful for nonprofits managing multiple grants and preventing findings.
GPT-5.2 Thinking; GPT-4.1; o3-mini
0
0
82
Compliance & Regulatory
BeginnerCCPA/CPRA consumer request workflow (DSAR) with SLAs
Designs a DSAR workflow including intake, verification, fulfillment, and logging, with SLA tracking. Useful for operationalizing privacy compliance.
GPT-5.2 Thinking; GPT-4.1; o3-mini
0
0
71
Compliance & Regulatory
AdvancedAML policy refresh: gap assessment against current requirements
Creates a structured AML policy gap assessment and an update plan. Useful for compliance leaders preparing for exams or audits.
GPT-5.2 Thinking; GPT-4.1; o3-mini
0
0
83