GDPR Compliance Auditor
PROSystematically audit GDPR compliance across contracts, data processing agreements, and procedures. Identify violations, perform gap analysis, and generate prioritized remediation roadmaps to avoid fines up to 4% of annual turnover.
Example Usage
Audit our vendor contract with Salesforce for GDPR Article 28(3) compliance. We process 50,000 EU customer records. Flag any missing DPA clauses, security obligations, and audit rights. Provide specific amendment language for high-risk gaps.
How to Use This Skill
Copy the skill using the button above
Paste into your AI assistant (Claude, ChatGPT, etc.)
Fill in your inputs below (optional) and copy to include with your prompt
Send and start chatting with your AI
Suggested Customization
| Description | Default | Your Value |
|---|---|---|
| Scope of audit: comprehensive, dpa_focused, dpia_only, dsar_process, security_focused | comprehensive | |
| Minimum severity to report: critical, high, medium, low | medium | |
| Organization size: sme (<250 employees), medium, large (1000+) | medium | |
| Jurisdiction: ICO (UK), CNIL (France), BfDI (Germany), DPA (Ireland), GDPR_general | GDPR_general | |
| Target compliance deadline: immediate, 30days, 90days, 6months | 90days | |
| Estimated number of data subjects affected | 10000 |
Research Sources
This skill was built using research from these authoritative sources:
- UK GDPR Guidance and Resources Official ICO guidance on GDPR implementation and accountability framework
- GDPR Compliance Audit Checklist Comprehensive checklist covering data mapping, security assessment, and documentation
- NLP-based Automated Compliance Checking of DPAs Academic research on automating DPA compliance verification
- Data Processing Agreement Requirements Detailed DPA requirements, processor obligations, and contractual standards
- Article 32 GDPR Security Guide Complete guide to security requirements and technical measures
- Data Protection Impact Assessment Template DPIA template conforming to Article 35 requirements
- Record of Processing Activities Guidance Irish DPC guidance on maintaining Article 30 records
- DSAR Comprehensive Guide Step-by-step DSAR handling procedures and compliance requirements
- GDPR Article 6 Legal Bases Explanation of lawful bases for data processing
- 72-Hour Breach Notification Timeline Guidelines for breach notification procedure requirements