帮助评估拟议功能或业务举措的合规要求、审批流程与主要风险点
复制安装指令,让 AI 自动完成配置 · 推荐新手
请帮我安装 askskill 上的 "compliance-check" 技能: 1. 下载 https://raw.githubusercontent.com/anthropics/knowledge-work-plugins/main/legal/skills/compliance-check/SKILL.md 2. 保存为 ~/.claude/skills/compliance-check/SKILL.md 3. 装好后重载技能,告诉我可以用了
请对这个新功能做合规检查:我们计划上线一个用户画像推荐功能,会收集浏览记录、地理位置和购买历史,用于个性化推荐,首发地区为欧盟和美国。请识别适用法规、所需审批、主要风险,以及上线前必须完成的事项清单。
一份按地区整理的合规分析,包含适用法规、审批角色、风险说明和上线前待办事项。
请评估这项营销活动的合规性:我们想通过短信和邮件向现有及潜在客户推广限时金融优惠,并根据用户行为做分群触达,覆盖英国、新加坡和加州用户。请说明涉及的监管要求、用户同意要求、退订规则和内部审批建议。
一份营销合规审查结果,列出各地区触达规则、同意要求、风险点与审批建议。
请检查这个业务计划的合规风险:我们准备将亚太用户支持工单数据集中到美国团队统一分析,数据中可能包含联系方式、订单信息和投诉内容。请判断涉及哪些跨境传输要求、是否需要法务或安全审批,以及有哪些高风险情形需要先处理。
一份项目推进前的合规判断,说明跨境要求、审批路径、风险优先级和缓解建议。
If you see unfamiliar placeholders or need to check which tools are connected, see CONNECTORS.md.
Run a compliance check on a proposed action, product feature, marketing campaign, or business initiative.
Important: This command assists with legal workflows but does not provide legal advice. Compliance assessments should be reviewed by qualified legal professionals. Regulatory requirements change frequently; always verify current requirements with authoritative sources.
/compliance-check $ARGUMENTS
Describe what you're planning to do. Examples:
## Compliance Check: [Initiative]
### Summary
[Quick assessment: Proceed / Proceed with conditions / Requires further review]
### Applicable Regulations and Policies
| Regulation/Policy | Relevance | Key Requirements |
|-------------------|-----------|-----------------|
| [GDPR / CCPA / HIPAA / etc.] | [How it applies] | [What you need to do] |
### Requirements
| # | Requirement | Status | Action Needed |
|---|-------------|--------|---------------|
| 1 | [Requirement] | [Met / Not Met / Unknown] | [What to do] |
### Risk Areas
| Risk | Severity | Mitigation |
|------|----------|------------|
| [Risk] | [High/Med/Low] | [How to address] |
### Recommended Actions
1. [Most important action]
2. [Second priority]
3. [Third priority]
### Approvals Needed
| Approver | Why | Status |
|----------|-----|--------|
| [Person/Team] | [Reason] | [Pending] |
### Further Review Recommended
[Areas where outside counsel or specialist review is advised]
Scope: Applies to processing of personal data of individuals in the EU/EEA, regardless of where the processing organization is located.
Key Obligations for In-House Legal Teams:
Common In-House Legal Touchpoints:
Scope: Applies to businesses that collect personal information of California residents and meet revenue, data volume, or data sale thresholds.
Key Obligations:
…
围绕客户问题进行多来源调研与溯源,快速整理背景并支持准确回复。
用严重性与发生可能性框架评估法律风险并判断升级处理需求