C15t
c15t/c15t
Work with c15t consent management docs, APIs, and integrations for Next.js, React, and JavaScript.
Guides compliance with Australia's Privacy Act 1988 including the 2024 reform amendments.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills australia-privacy-act --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/privacy/australia-privacy-act .claude/skills/australia-privacy-act && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "australia-privacy-act" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/australia-privacy-act into .claude/skills/australia-privacy-act/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "australia-privacy-act", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/australia-privacy-actType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills australia-privacy-act --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/privacy/australia-privacy-act .agents/skills/australia-privacy-act && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "australia-privacy-act" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/australia-privacy-act into .agents/skills/australia-privacy-act/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "australia-privacy-act", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills australia-privacy-act --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/privacy/australia-privacy-act .cursor/skills/australia-privacy-act && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "australia-privacy-act" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/australia-privacy-act into .cursor/skills/australia-privacy-act/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "australia-privacy-act", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/mukul975/Privacy-Data-Protection-Skills.git --path skills/privacy/australia-privacy-act--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills australia-privacy-act --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/privacy/australia-privacy-act .gemini/skills/australia-privacy-act && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "australia-privacy-act" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/australia-privacy-act into .gemini/skills/australia-privacy-act/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "australia-privacy-act", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install mukul975/Privacy-Data-Protection-Skills australia-privacy-actInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/privacy/australia-privacy-act .github/skills/australia-privacy-act && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "australia-privacy-act" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/australia-privacy-act into .github/skills/australia-privacy-act/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "australia-privacy-act", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills australia-privacy-act --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/privacy/australia-privacy-act .opencode/skills/australia-privacy-act && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "australia-privacy-act" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/australia-privacy-act into .opencode/skills/australia-privacy-act/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "australia-privacy-act", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
australia-privacy-actGuides compliance with Australia's Privacy Act 1988 including the 2024 reform amendments.
Australia Privacy Act is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides compliance with Australia's Privacy Act 1988 including the 2024 reform amendments. Covers automated decision-making transparency, children's privacy code, individual rights expansion, enforcement strengthening, and the Australian Privacy Principles (APPs). Keywords: Australia Privacy Act, APPs, OAIC, automated decisions, children privacy code, privacy reform.
Its SKILL.md is about 2.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts, reference files and assets (for example `assets/template.md`, `references/standards.md` and `references/workflows.md`).
It sits in Legal & Compliance, covering Privacy and GDPR. The repository describes itself as: 282+ structured privacy & data protection skills for AI agents. GDPR, CCPA, EU AI Act, HIPAA, LGPD, PIPL, DPDP Act. The licence is Apache-2.0.
3 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 9b2ef9e. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 1 file in scripts/ (Python), which the agent can run.
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Australia Privacy Act loads about 2.8k tokens when it runs, and up to ~4.5k if it reads all its reference files. Until then it costs about 98 tokens; SKILL.md has 1,286 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from mukul975/Privacy-Data-Protection-Skills at commit 9b2ef9e, republished under its Apache-2.0 licence (© mukul975). 1,286 words, ~2,762 tokens.
.claude/skills/australia-privacy-act/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.Australia's Privacy Act 1988 (Cth) is the primary federal data protection legislation, administered and enforced by the Office of the Australian Information Commissioner (OAIC). The Privacy Act applies to Australian Government agencies, private sector organisations with an annual turnover of more than AUD 3 million, and certain other organisations regardless of turnover (health service providers, organisations trading in personal information, credit reporting bodies).
The Australian Government's 2024 Privacy Act Reform Amendments (building on the Attorney-General's Department Privacy Act Review Report of February 2023) introduced significant reforms including a statutory tort for serious invasions of privacy, enhanced individual rights, automated decision-making transparency obligations, a children's privacy code, and strengthened enforcement powers.
| APP | Subject | Key Requirement |
|---|---|---|
| APP 1 | Open and transparent management | Maintain a clear privacy policy; take reasonable steps to implement practices that ensure compliance |
| APP 2 | Anonymity and pseudonymity | Give individuals the option of dealing anonymously or under a pseudonym where practicable |
| APP 3 | Collection of solicited personal information | Collect only information reasonably necessary for functions/activities; collect sensitive information only with consent |
| APP 4 | Dealing with unsolicited personal information | If unsolicited information could not have been collected under APP 3, destroy or de-identify it |
| APP 5 | Notification of collection | Notify individuals of: identity, purpose, third-party disclosures, overseas disclosures, access/correction rights, complaint mechanism |
| APP 6 | Use or disclosure | Use or disclose only for the purpose of collection or a directly related secondary purpose within reasonable expectations |
| APP 7 | Direct marketing | May use for direct marketing if individual would reasonably expect it and opt-out is provided; sensitive information requires consent |
| APP 8 | Cross-border disclosure | Before disclosing overseas, take reasonable steps to ensure the overseas recipient complies with the APPs |
| APP 9 | Adoption, use, or disclosure of government identifiers | Must not adopt a government identifier as own identifier; limited use and disclosure |
| APP 10 | Quality of personal information | Take reasonable steps to ensure information is accurate, up-to-date, complete, and relevant |
| APP 11 | Security of personal information | Take reasonable steps to protect from misuse, interference, loss, and unauthorised access; destroy or de-identify when no longer needed |
| APP 12 | Access to personal information | On request, give individuals access to their personal information |
| APP 13 | Correction of personal information | Take reasonable steps to correct if inaccurate, out-of-date, incomplete, irrelevant, or misleading |
| Element | Detail |
|---|---|
| Scope | Organisations using personal information in substantially automated decisions that significantly affect individual rights or interests |
| Transparency obligation | Must provide meaningful information about the automated decision-making process including: the fact that an automated decision has been made, the types of personal information used, and how the decision was reached |
| Right to human review | Individuals may request human review of automated decisions that significantly affect them |
| Impact assessment | Organisations must assess the impact of automated decision-making systems on privacy before deployment |
| Record-keeping | Maintain records of automated decision-making systems, including the logic involved and data inputs |
| Element | Detail |
|---|---|
| Scope | Social media services, online platforms, and other services likely to be accessed by children |
| Definition of child | Under 18 years (aligned with the definition in the Online Safety Act 2021) |
| Best interests principle | The best interests of the child must be a primary consideration in all actions concerning children's personal information |
| Age assurance | Organisations must implement appropriate age assurance mechanisms |
| Restrictions | Prohibition on using children's personal information for targeted advertising; restrictions on profiling; data minimisation requirements specific to children |
| Code development | OAIC to develop and register the code; industry consultation required |
| Right | 2024 Status | Detail |
|---|---|---|
| Right of access | Enhanced (APP 12) | Clarified scope; reduced grounds for refusal |
| Right to correction | Enhanced (APP 13) | Strengthened obligation to correct upon request |
| Right to erasure | New | Right to request deletion of personal information where it is no longer necessary for the purpose of collection, consent is withdrawn, or information was unlawfully collected |
| Right to de-identification | New | Alternative to erasure where deletion is impracticable |
| Right to object to direct marketing | Strengthened | Clearer opt-out obligations; unsubscribe must be actioned within 5 business days |
| Right to request explanation | New | Right to request explanation of how personal information was used in an automated decision |
| Element | Detail |
|---|---|
| Cause of action | Individual may bring proceedings for a serious invasion of privacy |
| Threshold | Invasion must be serious; court considers the nature of the privacy and the means of invasion |
| Remedies | Damages (including for emotional distress), injunctions, account of profits, apology orders |
| Limitation period | 1 year from when the individual became aware (or ought to have become aware) of the invasion |
| Defence | The invasion was in the public interest |
| Enhancement | Detail |
|---|---|
| Civil penalty increase | Maximum civil penalty increased to the greater of: AUD 50 million, three times the value of the benefit obtained, or 30% of adjusted turnover in the relevant period |
| Infringement notices | OAIC may issue infringement notices for specified contraventions |
| Enforceable undertakings | Strengthened regime for enforceable undertakings |
| Public interest determinations | Enhanced OAIC power to make public interest determinations |
Before disclosing personal information to an overseas recipient, the organisation must:
The reforms strengthen APP 8 by:
| Transfer Flow | Destination | APP 8 Compliance | Mechanism |
|---|---|---|---|
| Customer data → EU HQ | Germany | Reasonable steps (contractual safeguards) | Data processing agreement with APP-equivalent obligations |
| Employee data → Regional HR | Singapore | Reasonable steps (contractual safeguards) | Intra-group data sharing agreement |
| Logistics data → APAC | Japan | Reasonable steps (contractual safeguards) | Service agreement with privacy schedule |
A breach is eligible (notifiable) if:
| Element | Requirement |
|---|---|
| OAIC notification | As soon as practicable (not later than 30 days after the entity becomes aware) |
| Individual notification | As soon as practicable after preparing the statement |
| Statement content | Description of breach, information involved, recommended steps for individuals |
| Assessment period | 30 days from reasonable grounds to suspect a breach |
| Component | Detail |
|---|---|
| Privacy Officer (Australia) | Sarah Mitchell, Privacy and Compliance Lead — Sydney office |
| APP 1 privacy policy | Published at zenithglobal.com.au/privacy |
| APP 3 collection | Minimal collection; consent for sensitive information |
| APP 7 direct marketing | Opt-out mechanism; 5 business day unsubscribe processing |
| APP 8 cross-border | Contractual safeguards with all overseas recipients |
| APP 11 security | ISO 27001 certification; annual penetration testing |
| APP 12-13 access/correction | Privacy portal with 30-day response target |
| Part IIIC breach notification | 30-day assessment + notification workflow |
| Automated decision-making | Impact assessment conducted for credit scoring; human review available |
| Children's code readiness | Monitoring OAIC code development; no direct child services |
© mukul975, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 4 other files (scripts, references, assets) in skills/privacy/australia-privacy-act of mukul975/Privacy-Data-Protection-Skills.
Open the folder on GitHubat commit 9b2ef9e
Australia Privacy Act next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Australia Privacy Act this skillmukul975/Privacy-Data-Protection-Skills | 301 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | |
| C15tc15t/c15t | 1.9k | 1 repos | ~1.6k | Automated safety check: Pass | Apache-2.0 | |
| HIPAA Safe Harbor Coverage Auditmaziyarpanahi/openmed | 5.5k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | |
| Korean Privacy Termskimlawtech/korean-privacy-terms | 587 | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | |
| Gdpr ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance | 946 | 1 repos | ~3.9k | Automated safety check: Pass | MIT | |
| Hipaa ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance | 946 | 1 repos | ~2.3k | Automated safety check: Pass | MIT |
c15t/c15t
Work with c15t consent management docs, APIs, and integrations for Next.js, React, and JavaScript.
maziyarpanahi/openmed
Checks OpenMed de-identified clinical text against the 18 HIPAA Safe Harbor identifier categories and reports gaps and residual re-identification risk.
kimlawtech/korean-privacy-terms
처리방침·이용약관 자동 생성 스킬 패키지 (v4.0). An agent skill from kimlawtech/korean-privacy-terms.
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
Expert GDPR compliance assistant covering all four core workflows: (1) auditing code and systems for GDPR violations, (2) drafting GDPR-compliant documents such as privacy policies, Data Processing…
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
Expert HIPAA compliance assistant for healthcare and software contexts.
gregmos/PII-Shield
Universal legal document processor with PII anonymization. An agent skill from gregmos/PII-Shield.
mukul975/Privacy-Data-Protection-Skills
Implements age-gating mechanisms for online services to restrict access based on user age.
mukul975/Privacy-Data-Protection-Skills
Manages AI model retention and machine unlearning requirements.
mukul975/Privacy-Data-Protection-Skills
Conducts Data Protection Impact Assessments for AI and ML systems per EDPB Guidelines 04/2025 on AI processing.
mukul975/Privacy-Data-Protection-Skills
Structures risk mitigation planning and residual risk tracking for Data Protection Impact Assessments under GDPR Article 35(7)(d).
mukul975/Privacy-Data-Protection-Skills
Guides implementation of the GDPR accountability principle under Articles 5(2) and 24, including documentation requirements for policies, DPIAs, RoPA, training records, and breach logs.
mukul975/Privacy-Data-Protection-Skills
Conducts pre-DPIA threshold screening to determine whether a full Data Protection Impact Assessment is required under GDPR Article 35.
Categories
Guides compliance with Australia's Privacy Act 1988 including the 2024 reform amendments. Australia Privacy Act is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides compliance with Australia's Privacy Act 1988 including the 2024 reform amendments.
Australia Privacy Act fits situations like: tasks that involve Privacy and GDPR.
Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a claude-code`. Or copy the skill folder (skills/privacy/australia-privacy-act in mukul975/Privacy-Data-Protection-Skills) into .claude/skills/australia-privacy-act in your project. Claude Code loads it when a task matches its description.
Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a codex`. Or copy the skill folder (skills/privacy/australia-privacy-act in mukul975/Privacy-Data-Protection-Skills) into .agents/skills/australia-privacy-act in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill australia-privacy-act -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/australia-privacy-act, .gemini/skills/australia-privacy-act, .github/skills/australia-privacy-act and .opencode/skills/australia-privacy-act in your project.
Going by SKILL.md and its folder, Australia Privacy Act needs Python for the scripts in its folder. Our summary lists: Python 3.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Australia Privacy Act is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.8k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.8k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Australia Privacy Act: C15t (c15t/c15t, 1.9k stars), HIPAA Safe Harbor Coverage Audit (maziyarpanahi/openmed, 5.5k stars), Korean Privacy Terms (kimlawtech/korean-privacy-terms, 587 stars) and Gdpr Compliance (Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, 946 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
mukul975 (a GitHub user) maintains it in mukul975/Privacy-Data-Protection-Skills, which has 301 GitHub stars. The repository holds 280 skills in this directory. The repository was last updated on March 16, 2026.
Source: mukul975/Privacy-Data-Protection-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.