C15t
c15t/c15t
Work with c15t consent management docs, APIs, and integrations for Next.js, React, and JavaScript.
Quickly determine whether a processing activity needs a PIA, a mandatory GDPR DPIA, or can proceed — surfaces privacy policy conflicts and routes to the right next step.
$ npx skills add anthropics/claude-for-legal --skill use-case-triage -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install anthropics/claude-for-legal use-case-triage --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/anthropics/claude-for-legal.git skills-src && mkdir -p .claude/skills && cp -r skills-src/privacy-legal/skills/use-case-triage .claude/skills/use-case-triage && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "use-case-triage" agent skill from https://github.com/anthropics/claude-for-legal/tree/main/privacy-legal/skills/use-case-triage into .claude/skills/use-case-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "use-case-triage", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/anthropics/claude-for-legal/tree/main/privacy-legal/skills/use-case-triageType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add anthropics/claude-for-legal --skill use-case-triage -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install anthropics/claude-for-legal use-case-triage --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/anthropics/claude-for-legal.git skills-src && mkdir -p .agents/skills && cp -r skills-src/privacy-legal/skills/use-case-triage .agents/skills/use-case-triage && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "use-case-triage" agent skill from https://github.com/anthropics/claude-for-legal/tree/main/privacy-legal/skills/use-case-triage into .agents/skills/use-case-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "use-case-triage", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add anthropics/claude-for-legal --skill use-case-triage -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install anthropics/claude-for-legal use-case-triage --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/anthropics/claude-for-legal.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/privacy-legal/skills/use-case-triage .cursor/skills/use-case-triage && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "use-case-triage" agent skill from https://github.com/anthropics/claude-for-legal/tree/main/privacy-legal/skills/use-case-triage into .cursor/skills/use-case-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "use-case-triage", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/anthropics/claude-for-legal.git --path privacy-legal/skills/use-case-triage--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add anthropics/claude-for-legal --skill use-case-triage -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install anthropics/claude-for-legal use-case-triage --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/anthropics/claude-for-legal.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/privacy-legal/skills/use-case-triage .gemini/skills/use-case-triage && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "use-case-triage" agent skill from https://github.com/anthropics/claude-for-legal/tree/main/privacy-legal/skills/use-case-triage into .gemini/skills/use-case-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "use-case-triage", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install anthropics/claude-for-legal use-case-triageInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add anthropics/claude-for-legal --skill use-case-triage -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/anthropics/claude-for-legal.git skills-src && mkdir -p .github/skills && cp -r skills-src/privacy-legal/skills/use-case-triage .github/skills/use-case-triage && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "use-case-triage" agent skill from https://github.com/anthropics/claude-for-legal/tree/main/privacy-legal/skills/use-case-triage into .github/skills/use-case-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "use-case-triage", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add anthropics/claude-for-legal --skill use-case-triage -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install anthropics/claude-for-legal use-case-triage --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/anthropics/claude-for-legal.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/privacy-legal/skills/use-case-triage .opencode/skills/use-case-triage && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "use-case-triage" agent skill from https://github.com/anthropics/claude-for-legal/tree/main/privacy-legal/skills/use-case-triage into .opencode/skills/use-case-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "use-case-triage", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
use-case-triageQuickly determine whether a processing activity needs a PIA, a mandatory GDPR DPIA, or can proceed — surfaces privacy policy conflicts and routes to the right next step.
Use Case Triage is an agent skill from anthropics/claude-for-legal, published by the product's own GitHub organization. Quickly determine whether a processing activity needs a PIA, a mandatory GDPR DPIA, or can proceed — surfaces privacy policy conflicts and routes to the right next step. Use when the user asks "does this need a PIA", "triage this feature", "privacy check on X", "is this okay from a privacy perspective", or describes a new data processing activity, product feature, or vendor relationship.
Its SKILL.md is about 4.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Legal & Compliance, covering Privacy and GDPR. The repository describes itself as: A suite of plugins for legal workflows. The licence is Apache-2.0.
6 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 4a6c651. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md.
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Use Case Triage loads about 4.1k tokens when it runs. Until then it costs about 102 tokens; SKILL.md has 2,098 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from anthropics/claude-for-legal at commit 4a6c651, republished under its Apache-2.0 licence (© anthropics). 2,098 words, ~4,059 tokens.
.claude/skills/use-case-triage/SKILL.md (or your agent's skills folder).~/.claude/plugins/config/claude-for-legal/privacy-legal/CLAUDE.md. Confirm privacy practice is configured — if not, stop and direct to setup./privacy-legal:use-case-triage "New feature that uses behavioral data to personalize content recommendations"Matter context. Check ## Matter workspaces in the practice-level CLAUDE.md. If Enabled is ✗ (the default for in-house users), skip the rest of this paragraph — skills use practice-level context and the matter machinery is invisible. If enabled and there is no active matter, ask: "Which matter is this for? Run /privacy-legal:matter-workspace switch <slug> or say practice-level." Load the active matter's matter.md for matter-specific context and overrides. Write outputs to the matter folder at ~/.claude/plugins/config/claude-for-legal/privacy-legal/matters/<matter-slug>/. Never read another matter's files unless Cross-matter context is on.
Before producing output, check where it's going. If the user has named a destination (a channel, a distribution list, a counterparty, "everyone"), ask whether it's inside the privilege circle. Public channels, company-wide lists, counterparty/opposing counsel, vendors, and clients (for work product) waive the protection. When the destination looks outside the circle, flag it and offer (a) the privileged version for legal only, (b) a sanitized version for the broader channel, or (c) both — don't silently apply a privileged header and then help paste it somewhere the header won't protect it. See the canonical ## Shared guardrails → Destination check in this plugin's CLAUDE.md.
Answer the question that comes up before anyone runs a PIA: "does this thing even need one?" And if it does, what kind, and what's blocking the way?
Privacy triage is faster than PIA generation but upstream of it. It doesn't write the assessment — it determines whether one is needed and on what terms. The PIA generation skill does the deep work.
The output is one of four classifications:
This triage assumes the jurisdictional scope specified in your configuration. Privacy rules, assessment triggers, and lawful bases vary materially by jurisdiction (GDPR vs. state consumer privacy laws vs. sectoral). If the processing activity, controller, or affected data subjects fall under a different jurisdiction, this classification may not apply as written.
Before triaging, always read ~/.claude/plugins/config/claude-for-legal/privacy-legal/CLAUDE.md. The PIA trigger criteria, regulatory
footprint, and privacy policy commitments there are authoritative. Generic privacy
law reasoning is not a substitute for what this company has actually committed to.
If the file is missing or contains [PLACEHOLDER], surface this bounce:
I notice you haven't configured your practice profile yet — that's how I tailor the PIA trigger criteria, regulatory footprint, and privacy policy commitments to your practice.
Two choices:
- Run
/privacy-legal:cold-start-interview(2 minutes) to configure your profile, then I'll triage tailored to YOUR practice.- Say "provisional" and I'll triage against generic defaults — US jurisdiction, middle risk appetite, lawyer role, no playbook — and tag every output
[PROVISIONAL — configure your profile for tailored output]so you can see what I do before committing.
If the user says "provisional," run triage normally using these generic defaults: middle risk appetite, lawyer role, US jurisdiction (CCPA + common federal sectoral baselines), no playbook (classify from general privacy-law principles rather than matching to configured commitments). Tag the reviewer note and every finding block with [PROVISIONAL]. At the end of the output, append:
"That was a generic run against default assumptions. Run
/privacy-legal:cold-start-interviewto get output calibrated to YOUR practice — your regulatory footprint, your privacy policy commitments, your risk appetite. 2 minutes."
If the description is vague, ask before classifying. Get specific on:
"New feature" and "data processing activity" are not enough to triage accurately.
Read ~/.claude/plugins/config/claude-for-legal/privacy-legal/CLAUDE.md → ## PIA house style → Trigger criteria. Apply them.
If the house trigger is met → at minimum PIA REQUIRED.
If house trigger is not met, continue to Step 3 before concluding PROCEED. Some activities need a PIA regardless of internal policy.
Before researching regime-specific triggers, ask the activity-based federal overlay question first. If the processing touches a federally-regulated data category, the federal overlay is usually the controlling framework, not state privacy law, and the triage needs to surface that early rather than as an afterthought.
Activity-based federal overlays — ask first:
Does this processing touch:
- Financial account data or "nonpublic personal information" about consumers (GLBA / Reg P — applies to financial institutions and their non-affiliated third parties; imposes substantive restrictions on sharing NPI for marketing, separate from and on top of any state privacy-law exemption)?
- Protected health information held by a covered entity or business associate (HIPAA Privacy / Security Rules — substantive restrictions on use and disclosure, breach notification at 500+ records, BAA required for any vendor)?
- Education records held by a school or a service provider acting for a school (FERPA — consent requirements for disclosure, directory-information carve-outs)?
- Data from children under 13 collected by an operator of an online service directed to children or with actual knowledge (COPPA — parental consent, notice, deletion rights, strict limits on retention and sharing)?
- Another sectoral federal regime (e.g., VPPA for video-viewing records, CPNI for carrier data, DPPA for DMV records, TCPA for SMS/call consent)?
If yes to any: the federal overlay usually supplies the controlling substantive restriction, not just an exemption from a state consumer privacy law. Research and cite the specific provision before continuing. An activity that is "exempt" from CCPA under § 1798.145(e) because it is GLBA-covered is still subject to the GLBA restrictions (e.g., § 6802(a)-(c) on NPI sharing) — the CCPA exemption does not make the activity lawful; it just moves the governing framework to GLBA.
For each regime in ~/.claude/plugins/config/claude-for-legal/privacy-legal/CLAUDE.md → ## Regulatory footprint, research the currently operative mandatory privacy/data-protection assessment triggers. Cite controlling statute, regulation, or regulator guidance with pinpoint references. Note effective dates — national and state regulators publish and update trigger lists regularly; do not rely on a static checklist. Flag uncertainty for attorney verification rather than guess.
If any applicable regime's mandatory trigger is met → DPIA MANDATORY (or the equivalent regime-specific mandate), regardless of house trigger.
Strong indicators (not necessarily mandatory but do one anyway):
One or more strong indicators with no researched mandatory trigger → escalate to PIA REQUIRED (not DPIA mandatory, but flag in the output).
Read ~/.claude/plugins/config/claude-for-legal/privacy-legal/CLAUDE.md → ## Privacy policy commitments. Check the proposed activity
against every stated commitment.
Common conflicts to catch:
If a direct conflict exists → STOP. Not "proceed with caution" — the policy conflict has to be resolved (policy update or activity redesign) before this proceeds.
[PIA required / Mandatory DPIA required / Proceed — one-sentence why]
ACTIVITY: [State the processing activity as you understand it]
CLASSIFICATION: [PROCEED / PIA REQUIRED / DPIA MANDATORY / STOP]
House trigger met? [Yes / No] GDPR mandatory DPIA trigger? [Yes — [trigger] / No / N/A (GDPR not in footprint)] Privacy policy conflict? [None / Yes — [specific conflict]]
Reasoning: [1-3 sentences. For PROCEED: what makes it safe under current policy. For PIA/DPIA: what creates the obligation. For STOP: which specific policy commitment or principle is in conflict.]
If PIA REQUIRED or DPIA MANDATORY — conditions before proceeding:
| Requirement | Owner | Done? |
|---|---|---|
| [e.g., Privacy Impact Assessment — full DPIA format] | [Privacy counsel] | ☐ |
| [e.g., Legitimate interest assessment (if LI basis)] | [Privacy counsel] | ☐ |
| [e.g., DPO consultation (DPIA mandatory track)] | [DPO] | ☐ |
| [e.g., Vendor DPA in place] | [Privacy / Legal] | ☐ |
| [e.g., Privacy policy update before launch] | [Privacy counsel] | ☐ |
| [e.g., Consent mechanism built and tested] | [Product] | ☐ |
| [e.g., Data subject rights process covers new data category] | [Privacy / Product] | ☐ |
Lawful basis (if GDPR in footprint): [Consent / Contract / Legitimate Interest / Legal Obligation — or "unclear — needs determination in PIA"]
Next step — offer to continue:
After presenting a PIA REQUIRED or DPIA MANDATORY result, always end with:
"Want me to start the PIA now? I can run the intake questions and produce the assessment document without you needing to run a separate command."
If they say yes, load the pia-generation skill and continue in the same
conversation — pass the activity description and any triggers already identified.
If they say no, the triage result stands. The PIA can be run any time with:
/privacy-legal:pia-generation [activity]
If STOP:
Conflict: [Specific privacy policy commitment or principle in conflict]
To proceed, one of these has to change:
Don't offer a path forward if there isn't one. If the processing simply can't be reconciled with stated commitments or lawful basis, say so.
AI governance handoff: If the activity involves an AI system making or influencing decisions about individuals:
"This activity involves AI decision-making. An AI impact assessment is likely required in addition to a PIA. Use
/ai-governance-legal:aia-generation [activity]to run that in parallel — they're not substitutes."
Product counsel handoff: If this is a new product feature or launch:
"If this is part of a product launch, loop in product counsel. Use
/product-legal:launch-review— it will detect the privacy component and route to this plugin."
Only flag handoffs that are actually relevant. Don't append both as boilerplate.
If the user presents a feature list, roadmap, or backlog — summary table first, then expand each non-PROCEED entry:
| # | Activity | Classification | Key condition / blocker |
|---|---|---|---|
| 1 | [activity] | 🟢 Proceed | — |
| 2 | [activity] | 🟡 PIA required | Lawful-basis assessment needed; vendor DPA not in place |
| 3 | [activity] | 🟠 DPIA mandatory | Large-scale special category data |
| 4 | [activity] | 🔴 Stop | Privacy policy conflict — purpose limitation |
"It's anonymized" doesn't automatically mean PROCEED. Ask how it's anonymized and whether re-identification is realistically possible given the data set. Pseudonymized data is still personal data under GDPR.
"We already do something similar" isn't a triage. Existing processing that was never assessed doesn't grandfather new processing. If the new activity is materially different in scale, purpose, or data category, triage it fresh.
"Just a pilot" doesn't skip triage. A pilot that touches real user or employee data is subject to the same triggers. Apply the same classification; if a PIA is required, the pilot should have one.
"The vendor handles all the privacy." Vendor handles the infrastructure. You're still the controller determining the purposes. If personal data flows to the vendor, a DPA is required and triage still applies to the purpose.
Inferred data and derived attributes count. If the activity generates inferred data about individuals (e.g., a behavioral score, a predicted preference), treat the inferred attribute as personal data for triage purposes. Don't let "we're just computing a score" obscure what the score represents.
End with the next-steps decision tree per CLAUDE.md ## Outputs. Customize the options to what this skill just produced — the five default branches (draft the X, escalate, get more facts, watch and wait, something else) are a starting point, not a lock-in. The tree is the output; the lawyer picks.
© anthropics, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in privacy-legal/skills/use-case-triage of anthropics/claude-for-legal.
Open the folder on GitHubat commit 4a6c651
We found 2 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 2 other GitHub owners. This page covers the copy in anthropics/claude-for-legal, which our catalogue first saw on October 7, 2026.
Use Case Triage next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Use Case Triage this skillanthropics/claude-for-legal | 9.6k | 2 repos | ~4.1k | Automated safety check: Pass | Apache-2.0 | |
| C15tc15t/c15t | 1.9k | 1 repos | ~1.6k | Automated safety check: Pass | Apache-2.0 | |
| HIPAA Safe Harbor Coverage Auditmaziyarpanahi/openmed | 5.5k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | |
| Korean Privacy Termskimlawtech/korean-privacy-terms | 587 | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | |
| Gdpr ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance | 946 | 1 repos | ~3.9k | Automated safety check: Pass | MIT | |
| Hipaa ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance | 946 | 1 repos | ~2.3k | Automated safety check: Pass | MIT |
c15t/c15t
Work with c15t consent management docs, APIs, and integrations for Next.js, React, and JavaScript.
maziyarpanahi/openmed
Checks OpenMed de-identified clinical text against the 18 HIPAA Safe Harbor identifier categories and reports gaps and residual re-identification risk.
kimlawtech/korean-privacy-terms
처리방침·이용약관 자동 생성 스킬 패키지 (v4.0). An agent skill from kimlawtech/korean-privacy-terms.
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
Expert GDPR compliance assistant covering all four core workflows: (1) auditing code and systems for GDPR violations, (2) drafting GDPR-compliant documents such as privacy policies, Data Processing…
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
Expert HIPAA compliance assistant for healthcare and software contexts.
gregmos/PII-Shield
Universal legal document processor with PII anonymization. An agent skill from gregmos/PII-Shield.
anthropics/claude-for-legal
Structures a legal clinic client intake interview and produces a case summary with cross-area issue spotting, conflict flags and triage classification.
anthropics/claude-for-legal
Holds student work in a queue for a legal clinic professor to approve, edit-then-approve or return before anything reaches clients or courts.
anthropics/claude-for-legal
Builds a review grid with one row per document and one column per data point, each cell cited to a verbatim quote, built for M&A diligence and other batch reviews.
anthropics/claude-for-legal
Runs a category-by-category legal review of a product launch from a PRD or tracker ticket, calibrated to your team's framework, and writes a review memo in house format.
anthropics/claude-for-legal
Searches watched registries for community legal skills, shows matches with descriptions and offers the full SKILL.md before anything is installed.
anthropics/claude-for-legal
Shows which contracts renew soon and when notice must be sent by, working from a maintained renewal register, and warns about missed cancellation windows.
Categories
Quickly determine whether a processing activity needs a PIA, a mandatory GDPR DPIA, or can proceed — surfaces privacy policy conflicts and routes to the right next step. Use Case Triage is an agent skill from anthropics/claude-for-legal, published by the product's own GitHub organization. Quickly determine whether a processing activity needs a PIA, a mandatory GDPR DPIA, or can proceed — surfaces privacy policy conflicts and routes to the right next step.
Use Case Triage fits situations like: the user asks does this need a PIA; triage this feature; privacy check on X; is this okay from a privacy perspective.
Run `npx skills add anthropics/claude-for-legal --skill use-case-triage -a claude-code`. Or copy the skill folder (privacy-legal/skills/use-case-triage in anthropics/claude-for-legal) into .claude/skills/use-case-triage in your project. Claude Code loads it when a task matches its description.
Run `npx skills add anthropics/claude-for-legal --skill use-case-triage -a codex`. Or copy the skill folder (privacy-legal/skills/use-case-triage in anthropics/claude-for-legal) into .agents/skills/use-case-triage in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add anthropics/claude-for-legal --skill use-case-triage -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/use-case-triage, .gemini/skills/use-case-triage, .github/skills/use-case-triage and .opencode/skills/use-case-triage in your project.
SKILL.md names no scripts, command-line tools or credentials: Use Case Triage is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Use Case Triage is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 4.1k tokens (SKILL.md is roughly 16k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Use Case Triage: C15t (c15t/c15t, 1.9k stars), HIPAA Safe Harbor Coverage Audit (maziyarpanahi/openmed, 5.5k stars), Korean Privacy Terms (kimlawtech/korean-privacy-terms, 587 stars) and Gdpr Compliance (Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, 946 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
anthropics (a GitHub organization, an official publisher) maintains it in anthropics/claude-for-legal, which has 9,633 GitHub stars. The repository holds 147 skills in this directory. The repository was last updated on September 29, 2026.
Source: anthropics/claude-for-legal on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.