Advanced
GDPR data processing inventory: systems, data types, legal bases
Creates a GDPR processing inventory and maps data types to purposes, legal bases, and retention. Useful for privacy compliance and audit readiness.
Create a GDPR data processing inventory for {organization_name}.
Inputs:
- Systems/applications list: {systems_list}
- Personal data types collected: {data_types}
- Processing purposes: {purposes}
- Legal bases (if known): {legal_bases}
- Data sharing/third parties: {third_parties}
- Retention policies: {retention_policies}
Output:
1) Inventory table: system, data types, purpose, legal basis, recipients, retention, security controls, owner.
2) Gaps and risks (missing legal basis, retention unclear, third-party contracts).
3) Action plan to remediate.
4) Documentation suggestions (RoPA, DPAs, DPIAs where needed).
This is not legal advice; coordinate with privacy counsel.Related Prompts
Compliance & Regulatory
IntermediateGrant compliance monitoring plan with testing cadence
Designs a grant compliance monitoring plan including testing cadence and documentation. Useful for nonprofits managing multiple grants and preventing findings.
GPT-5.2 Thinking; GPT-4.1; o3-mini
0
0
80
Compliance & Regulatory
AdvancedAML policy refresh: gap assessment against current requirements
Creates a structured AML policy gap assessment and an update plan. Useful for compliance leaders preparing for exams or audits.
GPT-5.2 Thinking; GPT-4.1; o3-mini
0
0
81
Compliance & Regulatory
BeginnerWhistleblower Policy & Procedure Draft
Drafts a safe mechanism for employees to report unethical behavior.
GPT-4oGemini 1.5 Pro
0
0
107