Privacy and Data Protection Skills

AI skills for GDPR compliance, DPIA generation, data subject rights, and privacy impact assessments across EU and global frameworks.

legalcode-biometric-data-compliance

Assess biometric data privacy compliance across Illinois BIPA (740 ILCS 14), Texas CUBI (Tex.

Global

legalcode-board-resolution-drafter

Drafts board resolutions and unanimous written consents (UWCs) for common corporate actions: officer appointments and removals, equity issuances, stock option and warrant grants (ISO/NSO), equity ince...

Global

legalcode-breach-affected-party-communication

Drafts and reviews the complete suite of breach communications directed at affected individuals and the public following a confirmed personal data breach: individual notification letters with jurisdic...

Global

legalcode-breach-regulatory-notification-drafter

Draft jurisdiction-specific regulatory notification documents for data protection authorities (DPAs), Attorneys General, and sector regulators following a confirmed data breach.

Global

legalcode-breach-severity-assessment

Run multi-jurisdiction personal-data breach severity assessments for legal/privacy and incident-response teams.

Global

legalcode-canned-responses

Generate, manage, and customize templated responses for routine legal inquiries — data subject requests (DSRs/DSARs), litigation holds, privacy inquiries, vendor questions, NDA requests, legal process...

Global

legalcode-canned-responses-ccpa

Generate, manage, and customize templated responses for routine legal inquiries under California and US federal law — consumer rights requests (CCPA/CPRA), litigation holds, privacy inquiries, vendor...

United States — California

legalcode-canned-responses-eu

Generate, manage, and customize templated responses for routine legal inquiries under EU law — data subject requests (DSRs under EU GDPR), litigation holds, privacy inquiries, vendor questions, NDA re...

European Union

legalcode-canned-responses-ew

Generate, manage, and customise templated responses for routine legal inquiries under the laws of England and Wales -- data subject access requests (DSARs) under UK GDPR and DPA 2018, litigation holds...

United Kingdom — England Wales

legalcode-ch-ndsg-compliance

Switzerland revised Federal Act on Data Protection (nDSG / revDSG / FADP, SR 235.1, in force 1 September 2023) compliance assessment.

Switzerland

legalcode-consent-mechanism-review

Reviews consent collection mechanisms for validity under GDPR Article 7, EDPB Guidelines 05/2020 on consent, and EDPB Guidelines 03/2022 on deceptive design patterns.

Global

legalcode-cookie-compliance-audit

Audit cookie and tracking technology implementations for ePrivacy Directive and GDPR compliance.

Global

legalcode-cross-border-transfer-assessment

Assess the lawfulness of international personal data transfers under GDPR Chapter V, UK GDPR, and Swiss DPA (nDSG).

Global

legalcode-data-mapping-workflow

Conduct end-to-end data mapping exercises to build Records of Processing Activities (RoPA) compliant with GDPR Article 30, CCPA/CPRA, LGPD, PIPEDA, and APPI.

Global

legalcode-dpa-review-and-negotiation

Review and negotiate Data Processing Agreements (DPAs) clause-by-clause against GDPR Article 28 mandatory requirements, UK GDPR equivalents, CCPA/CPRA service provider contract provisions, and LGPD op...

Global

legalcode-dpia-generator

Build and review Data Protection Impact Assessments (DPIAs) for high-risk processing under GDPR/UK GDPR and aligned privacy regimes.

Global

legalcode-eu-dpia-assessment

Perform EU Data Protection Impact Assessments (DPIAs) under GDPR Article 35, EDPB Guidelines WP 248 rev.01, EDPB Opinion 28/2024 (AI/ML systems), EDPB Guidelines 01/2025 (Pseudonymisation), and nation...

European Union

legalcode-eu-gdpr-breach-notification-operations

Runs the complete EU GDPR personal data breach response workflow from initial incident triage through post-incident remediation.

European Union

legalcode-eu-privacy-notice-drafter

Draft and review GDPR-compliant privacy notices for any EU/EEA audience or jurisdiction.

European Union

legalcode-fr-cnil-privacy-compliance

Assess an organization's privacy compliance against French data protection law: the Loi Informatique et Libertés (LIL, Loi n°78-17 du 6 janvier 1978 modifiée), CNIL regulatory guidance, and GDPR as im...

France

legalcode-gdpr-legal-basis-assessment

Systematically assess the appropriate GDPR Article 6 lawful basis for any processing activity — covering consent (Art.

Global

legalcode-hipaa-compliance-assessment

HIPAA compliance assessment for covered entities and business associates covering the Security Rule (45 CFR Part 164 Subpart C), Privacy Rule (45 CFR Part 164 Subpart E), and Breach Notification Rule...

Global

legalcode-jurisdiction-mapper

Produces comparative legal matrices across multiple jurisdictions for privacy and data protection, employment law, data localization, consumer protection, contract enforcement, and corporate governanc...

Global

legalcode-legal-risk-assessment

Assess legal risk across an organization, transaction, product, or initiative — identify risks by category (regulatory, contractual, litigation, IP, data privacy, employment, corporate governance), sc...

Global

legalcode-legitimate-interest-assessment

Conduct a three-part Legitimate Interest Assessment (LIA) under GDPR Art.

Global

legalcode-multi-jurisdiction-privacy-comparison

Perform a side-by-side comparison of global privacy law requirements for specific processing activities or business operations across 12+ international regimes.

Global

legalcode-privacy-policy-drafter

Draft, localize, and QA website/app privacy policies and notice-at-collection content across GDPR/UK GDPR, CCPA/CPRA, LGPD, and expanding state/global privacy regimes.

Global

legalcode-regulatory-change-tracker

Monitor regulatory landscape changes and assess their impact on organizational compliance posture across privacy, employment, financial services, environmental, AI, and sector-specific regulations.

Global

legalcode-ropa-generator

Generate Article 30 Records of Processing Activities (RoPA) for controllers and processors under GDPR, UK GDPR, Swiss FADP, and Brazil LGPD.

Global

legalcode-soc2-readiness-assessment

Assess SOC 2 Type I and Type II readiness across all five AICPA Trust Service Criteria (Security, Availability, Processing Integrity, Confidentiality, Privacy).

Global

legalcode-us-state-privacy-comparison

Compare all enacted US state comprehensive privacy laws to determine applicability, map consumer rights obligations, and produce a compliance gap analysis for multi-state operations.

Global

legalcode-vendor-privacy-assessment

Conduct comprehensive privacy risk assessments of third-party vendors and service providers.

Global