Agent skill

Eu Code Of Conduct

by mukul975 in mukul975/Privacy-Data-Protection-Skills

Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and…

Apache-2.0Auto-check passedLegal & Compliance

Install Eu Code Of Conduct

skills CLI
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install mukul975/Privacy-Data-Protection-Skills eu-code-of-conduct --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/privacy/eu-code-of-conduct .claude/skills/eu-code-of-conduct && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
eu-code-of-conduct
GitHub stars
301
Token cost
~4.3k tokens
SKILL.md length
1,900 words
Files
5 (incl. scripts, references, assets)
Skills in repo
280
Repo updated
First seen
Licence
Apache-2.0

At a glance

Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and…

  • Works in 5 steps: Added Value → Scope and Applicability → Representativeness → …
  • Tasks that involve Policy and terms drafting
  • SKILL.md covers Overview, Legal Framework, EDPB Approval Requirements… and Monitoring Body Accreditation, plus 5 more sections
  • Runs Python scripts from its folder

What it does

Eu Code Of Conduct is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and complaint handling. Covers sector-specific codes, transnational codes, and Art. 40(3) approval by supervisory authorities. Keywords: code of conduct, Article 40, Article 41, EDPB, monitoring body, adherence.

Its SKILL.md is about 4.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts, reference files and assets (for example `assets/template.md`, `references/standards.md` and `references/workflows.md`).

It sits in Legal & Compliance, covering Policy and terms drafting and Privacy and GDPR. The repository describes itself as: 282+ structured privacy & data protection skills for AI agents. GDPR, CCPA, EU AI Act, HIPAA, LGPD, PIPL, DPDP Act. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Policy and terms drafting
  • Tasks that involve Privacy and GDPR

Example prompts

  • “Use the eu-code-of-conduct skill to guide EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring…”
  • “/eu-code-of-conduct”

Requirements

  • Python 3

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. Added Value
  2. Scope and Applicability
  3. Representativeness
  4. Effective Monitoring Mechanism
  5. Complaint Handling

What it can do on your machine

Read from SKILL.md and the folder at commit 9b2ef9e. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Python), which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Eu Code Of Conduct loads about 4.3k tokens when it runs, and up to ~5.4k if it reads all its reference files. Until then it costs about 106 tokens; SKILL.md has 1,900 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~106
When it runs · the whole SKILL.md, loaded when a task matches
~4.3k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~5.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from mukul975/Privacy-Data-Protection-Skills at commit 9b2ef9e, republished under its Apache-2.0 licence (© mukul975). 1,900 words, ~4,302 tokens.

Download SKILL.mdSave it as .claude/skills/eu-code-of-conduct/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
eu-code-of-conduct
description
Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and complaint handling. Covers sector-specific codes, transnational codes, and Art. 40(3) approval by supervisory authorities. Keywords: code of conduct, Article 40, Article 41, EDPB, monitoring body, adherence.
license
Apache-2.0
metadata.author
mukul975
metadata.version
1.0
metadata.domain
privacy
metadata.subdomain
privacy-audit-certification
metadata.tags
code-of-conduct, article-40, article-41, edpb, monitoring-body, adherence

EU Code of Conduct Adherence per Articles 40-41 GDPR

Overview

Articles 40 and 41 of the GDPR encourage the drawing up of codes of conduct intended to contribute to the proper application of the GDPR, taking account of the specific features of the various processing sectors. A code of conduct approved under Art. 40 provides a demonstrable compliance mechanism that controllers and processors can adhere to, offering evidentiary weight during supervisory authority investigations and serving as a factor in administrative fine calculations under Art. 83(2)(j).

The EDPB adopted Guidelines 1/2019 on Codes of Conduct and Monitoring Bodies under Regulation 2016/679, providing detailed guidance on the approval process, content requirements, monitoring body accreditation, and adherence mechanisms. As of 2024, the EDPB has issued opinions on several transnational codes and national supervisory authorities have approved domestic codes across sectors including cloud computing, direct marketing, clinical trials, and credit information.

Sentinel Compliance Group adheres to two approved codes of conduct: the EU Cloud Code of Conduct (SCOPE Europe) for its cloud processing activities and a national code for direct marketing activities approved by the Belgian DPA.

Article 40 — Codes of Conduct

Art. 40(1): Member States, supervisory authorities, the Board, and the Commission shall encourage the drawing up of codes of conduct intended to contribute to the proper application of the GDPR.

Art. 40(2): Codes of conduct may cover a wide range of processing areas:

Area (Art. 40(2))DescriptionExample
(a) Fair and transparent processingProcessing principles implementationPlain-language privacy notices for sector
(b) Legitimate interestsBalancing tests for specific sectorsLegitimate interest in fraud prevention for financial services
(c) Collection of personal dataSector-specific collection standardsMinimum data sets for insurance applications
(d) PseudonymisationSector pseudonymisation techniquesPatient data pseudonymisation in clinical trials
(e) Information to the public and data subjectsStandardised transparency measuresLayered notice templates for e-commerce
(f) Exercise of data subject rightsSector-specific DSR proceduresStandardised portability formats for telecommunications
(g) Information and protection of childrenAge verification and child protectionAge-appropriate design for educational technology
(h) Technical and organisational measures (Art. 24, 25)Sector security baselinesMinimum encryption standards for health data processors
(i) Breach notificationSector breach assessment criteriaSeverity thresholds for financial data breaches
(j) International transfersTransfer mechanisms via codesBinding commitments in cloud codes for third-country transfers
(k) Dispute resolution and enforcementOut-of-court mechanismsMediation procedures for marketing opt-out disputes

Art. 40(3): Codes may be adhered to by controllers or processors not subject to the GDPR to provide appropriate safeguards for international transfers under Art. 46(2)(e), provided the code includes binding and enforceable commitments from the third-country controller or processor.

Art. 40(5): Draft codes must be submitted to the competent supervisory authority for approval. The supervisory authority provides an opinion on whether the code complies with the GDPR.

Art. 40(7): For transnational codes (covering processing activities in several Member States), the supervisory authority submits the draft to the EDPB, which issues an opinion. If the EDPB opinion is positive, the Board submits it to the Commission, which may adopt an implementing act giving general validity within the Union.

Article 41 — Monitoring Bodies

Art. 41(1): Monitoring of compliance with a code of conduct pursuant to Art. 40 may be carried out by a body which has an appropriate level of expertise in relation to the subject-matter of the code and is accredited for that purpose by the competent supervisory authority.

Art. 41(2): Accreditation requirements for monitoring bodies:

RequirementDescription
IndependenceDemonstrated independence from the profession and the code owner
ExpertiseAppropriate level of expertise in the subject matter
ProceduresEstablished procedures for assessing eligibility, monitoring compliance, and reviewing adherence
Complaint handlingProcedures for handling complaints about infringements by code adherents
TransparencyPublic information about monitoring activities and outcomes
No conflict of interestFree from conflicts of interest that could impair monitoring objectivity

Art. 41(4): The monitoring body may take appropriate action in cases of infringement, including suspension or exclusion of the controller or processor from the code. It shall inform the competent supervisory authority of such actions and reasons.

EDPB Approval Requirements (Guidelines 1/2019)

Code Content Requirements

The EDPB requires approved codes to meet the following substantive criteria:

1. Added Value

The code must provide specific, practical guidance beyond merely restating GDPR provisions:

  • Sector-specific interpretations of GDPR principles
  • Concrete implementation guidance for the target sector
  • Standardised templates, procedures, or technical measures
  • Clear rules that resolve ambiguity in GDPR application to the sector
2. Scope and Applicability
  • Clear definition of the sector, processing activities, and types of controllers/processors covered
  • Explicit statement of which GDPR provisions the code addresses
  • Geographic scope (national or transnational)
  • Membership criteria and eligibility requirements
3. Representativeness
  • The code owner must represent a sufficient portion of the sector
  • Evidence of consultation with stakeholders including data subjects, consumer organizations, and supervisory authorities
  • Support from a significant number of potential adherents
4. Effective Monitoring Mechanism
  • Identification of a monitoring body meeting Art. 41 requirements
  • Description of monitoring procedures including regular audits, complaint handling, and enforcement actions
  • Graduated enforcement measures (warning, corrective action, suspension, exclusion)
  • Annual reporting on monitoring activities
5. Complaint Handling
  • Accessible complaint mechanism for data subjects
  • Defined timelines for complaint investigation and resolution
  • Right to escalate to the supervisory authority
  • Published complaint statistics
Procedural Requirements
National Code Approval Process
1. Code Owner drafts code with stakeholder consultation
   ↓
2. Code Owner submits draft to competent Supervisory Authority
   ↓
3. Supervisory Authority assesses compliance with GDPR and EDPB Guidelines
   ↓
4. Supervisory Authority requests amendments (iterative process)
   ↓
5. Supervisory Authority approves the code (Art. 40(5))
   ↓
6. Supervisory Authority registers and publishes the code (Art. 40(6))
   ↓
7. Commission compiles approved codes in a register (Art. 40(11))
Transnational Code Approval Process
1. Code Owner drafts code with multi-country stakeholder consultation
   ↓
2. Code Owner submits draft to the lead Supervisory Authority
   ↓
3. Lead Supervisory Authority conducts initial assessment
   ↓
4. Lead Supervisory Authority submits draft to EDPB for opinion (Art. 40(7))
   ↓
5. EDPB Secretariat circulates to all concerned Supervisory Authorities
   ↓
6. EDPB issues opinion (positive, positive with conditions, or negative)
   ↓
7. If positive: Lead Supervisory Authority approves the code
   ↓
8. Commission may adopt implementing act giving general validity (Art. 40(9))

Monitoring Body Accreditation

Accreditation Process
  1. Application: The proposed monitoring body submits an accreditation application to the competent supervisory authority
  2. Assessment: The supervisory authority evaluates the application against Art. 41 requirements and the EDPB accreditation criteria
  3. Decision: The supervisory authority grants or denies accreditation
  4. Duration: Accreditation is typically granted for a period of five years, renewable
  5. Review: The supervisory authority may review and revoke accreditation if the monitoring body no longer meets the requirements
Monitoring Body Functions
FunctionDescriptionFrequency
Eligibility AssessmentEvaluate new adherence applications against code requirementsUpon application
Compliance MonitoringConduct periodic compliance assessments of adherentsAnnual at minimum
Complaint InvestigationInvestigate data subject complaints about adherent practicesUpon receipt
Corrective ActionRequire adherents to remediate non-complianceAs needed
EnforcementSuspend or exclude non-compliant adherentsAs needed
ReportingReport monitoring activities to the supervisory authorityAnnual
Code ReviewRecommend code amendments based on monitoring experiencePeriodic
Monitoring Methodology

The monitoring body assesses adherent compliance through:

  • Documentation Review: Privacy policies, processing records, DPIAs, DPAs, and other documented evidence
  • Technical Assessment: Verification of technical measures specified in the code
  • Interviews: Discussions with key personnel responsible for privacy compliance
  • Sample Testing: Testing of specific controls (DSAR handling, consent mechanisms, deletion processes)
  • Complaint Analysis: Review of data subject complaints and their resolution
  • Incident Review: Assessment of data breach handling in accordance with code requirements

Adherence Declaration

Show full SKILL.md (790 more words)Show less
Process for Adhering to an Approved Code
  1. Eligibility Check: Confirm that the organization falls within the code's defined scope (sector, processing activities, geography)
  2. Self-Assessment: Complete the code's self-assessment questionnaire demonstrating compliance with all code requirements
  3. Evidence Compilation: Prepare evidence portfolio documenting implementation of each code requirement
  4. Monitoring Body Application: Submit adherence application to the accredited monitoring body
  5. Initial Assessment: The monitoring body conducts an initial compliance assessment
  6. Gap Remediation: Address any gaps identified by the monitoring body
  7. Adherence Decision: The monitoring body approves or denies adherence
  8. Public Declaration: Organization is listed in the code's public register of adherents
  9. Ongoing Monitoring: Submit to periodic monitoring assessments by the monitoring body
Adherence Documentation

The organization must maintain:

DocumentPurposeUpdate Frequency
Adherence DeclarationFormal commitment to comply with all code requirementsUpon adherence, renewed annually
Compliance MatrixMapping of code requirements to organizational controlsUpdated upon changes
Evidence PortfolioSupporting documentation for each code requirementMaintained continuously
Annual Compliance ReportSelf-assessment of continued complianceAnnual
Incident NotificationsReports of code compliance failures to the monitoring bodyWithin defined timeframes

Compliance Verification

Annual Compliance Assessment

The monitoring body conducts annual compliance assessments of each adherent:

Assessment Scope:

  • Review of adherence documentation and evidence portfolio
  • Verification of continued eligibility
  • Testing of key code requirements through sampling
  • Review of complaints received and their resolution
  • Review of any incidents or breaches and their handling
  • Assessment of any changes to processing activities since last assessment

Assessment Outcomes:

OutcomeCriteriaConsequence
CompliantAll code requirements metContinued adherence, next assessment in 12 months
Conditionally CompliantMinor gaps identifiedRemediation required within 90 days, follow-up assessment
Non-CompliantMaterial gaps in one or more code requirementsCorrective action plan required; suspension if not remediated within defined timeframe
ExcludedRepeated or severe non-complianceRemoval from code adherent register, notification to supervisory authority
Complaint-Triggered Verification

When a data subject complaint is received:

  1. Monitoring body acknowledges receipt within 5 business days
  2. Monitoring body conducts preliminary assessment within 15 business days
  3. If the complaint is substantiated, the monitoring body:
    • Notifies the adherent and requires a response within 15 business days
    • Conducts an investigation including evidence gathering
    • Determines whether a code infringement occurred
    • If infringement confirmed: requires remediation and may impose sanctions
  4. Monitoring body communicates the outcome to the complainant within 60 days of receipt
  5. If the complainant is dissatisfied, the monitoring body provides information on escalation to the supervisory authority

Approved Codes of Conduct (Notable Examples)

EU Cloud Code of Conduct (SCOPE Europe)
  • Approved: May 2021 by Belgian DPA (lead SA), positive EDPB opinion
  • Monitoring Body: SCOPE Europe AISBL (accredited by Belgian DPA)
  • Scope: Cloud infrastructure (IaaS), platform (PaaS), and software (SaaS) service providers acting as data processors
  • Key Provisions: Data localization transparency, sub-processor management, data portability, data deletion, security measures, breach notification
  • Adherents: Major cloud providers including Google Cloud, IBM Cloud, Oracle Cloud, Salesforce, SAP, Cisco
EU Data Governance Code of Conduct for Cloud Infrastructure Service Providers (CISPE)
  • Approved: 2023 by CNIL (France)
  • Scope: Cloud infrastructure service providers
  • Key Provisions: Data sovereignty, processor obligations, transparency
FEDMA Code of Practice for Direct Marketing (Federation of European Direct and Interactive Marketing)
  • Status: Under development for EDPB submission
  • Scope: Direct marketing industry across EU
  • Key Provisions: Consent for electronic marketing, legitimate interest assessments, opt-out mechanisms

Benefits of Code of Conduct Adherence

Regulatory Benefits
  1. Art. 24(3): Adherence to an approved code may be used as an element to demonstrate compliance with controller obligations
  2. Art. 28(5): Adherence by a processor may be used as an element to demonstrate sufficient guarantees per Art. 28(1)
  3. Art. 32(3): Adherence may be used as an element to demonstrate compliance with security obligations
  4. Art. 35(8): Compliance with approved codes shall be taken into due account when assessing DPIA impact
  5. Art. 46(2)(e): Codes with binding commitments can serve as appropriate safeguards for international transfers
  6. Art. 83(2)(j): Adherence to approved codes is a factor supervisory authorities consider when deciding on administrative fines (mitigating)
Business Benefits
  • Competitive differentiation through demonstrated compliance
  • Simplified vendor due diligence for customers
  • Sector-specific best practice alignment
  • Structured framework for privacy compliance
  • External validation through monitoring body oversight

Sentinel Compliance Group Code of Conduct Implementation

  • EU Cloud Code of Conduct: Adhered since September 2022; annual assessment by SCOPE Europe monitoring body; no compliance findings in 2024 assessment
  • Scope Covered: Cloud SaaS processing activities across EU data centers (Frankfurt, Amsterdam, Dublin)
  • Compliance Matrix: 156 code requirements mapped to organizational controls
  • Annual Assessment: Last completed October 2024, outcome: Compliant
  • Data Subject Complaints via Code: 3 complaints received in 2024; all resolved within 45 days; none escalated to supervisory authority
  • Transfer Mechanism: Exploring use of Art. 46(2)(e) code-based transfer mechanism for UK adequacy contingency planning

© mukul975, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (scripts, references, assets) in skills/privacy/eu-code-of-conduct of mukul975/Privacy-Data-Protection-Skills.

  • SKILL.md
  • assets/template.md
  • references/standards.md
  • references/workflows.md
  • scripts/process.py

Open the folder on GitHubat commit 9b2ef9e

Compare with similar skills

Eu Code Of Conduct next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Eu Code Of Conduct compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Eu Code Of Conduct this skillmukul975/Privacy-Data-Protection-Skills301—~4.3kAutomated safety check: PassApache-2.0
Pii Contract Analyzegregmos/PII-Shield150—~8.9kAutomated safety check: NotesMIT
Privacy Eukimlawtech/korean-privacy-terms587—~968Automated safety check: PassApache-2.0
Terms Of Service Generatorzubair-trabzada/ai-legal-claude1.8k—~2.9kAutomated safety check: PassNone
Tos Clause Scannerzebbern/claude-code-guide4.7k1 repos~3.3kAutomated safety check: PassMIT
Legal Advisoraiskillstore/marketplace4339 repos~615Automated safety check: PassNone

Similar skills

  • Pii Contract Analyze

    gregmos/PII-Shield

    Universal legal document processor with PII anonymization. An agent skill from gregmos/PII-Shield.

    150 GitHub stars~8.9k tokensUpdated 3 mo ago
    Legal & ComplianceAuto-check: notes
  • Privacy Eu

    kimlawtech/korean-privacy-terms

    EU 사용자 대상 서비스용 Privacy Notice·Terms of Service·Consent Modal·Cookie Banner 자동 생성.

    587 GitHub stars~968 tokensUpdated 1 mo ago
    Legal & ComplianceAuto-check passed
  • Terms Of Service Generator

    zubair-trabzada/ai-legal-claude

    Generates complete, GDPR/CCPA-compliant Terms of Service for a website or SaaS product, with plain English summaries for each section

    1.8k GitHub stars~2.9k tokensUpdated 6 mo ago
    Legal & ComplianceAuto-check passed
  • Tos Clause Scanner

    zebbern/claude-code-guide

    Audit Terms of Service, user agreements, and privacy policies for consumer risks, producing a structured report that flags unfair clauses, data traps, and liability issues.

    4.7k GitHub starsUsed in 1 repo~3.3k tokens
    Legal & ComplianceAuto-check passed
  • Legal Advisor

    aiskillstore/marketplace

    Draft privacy policies, terms of service, disclaimers, and legal notices.

    433 GitHub starsUsed in 9 repos~615 tokens
    Legal & ComplianceAuto-check passed
  • Legal Pages

    theopenco/llmgateway

    Edit LLM Gateway legal documents — Terms of Use, Privacy Policy, sub-processors, and product-specific supplemental terms such as DevPass.

    1.7k GitHub stars~215 tokensUpdated yesterday
    Legal & ComplianceAuto-check passed

More from mukul975/Privacy-Data-Protection-Skills

All 280 skills in this repo
  • Age Gating Services

    mukul975/Privacy-Data-Protection-Skills

    Implements age-gating mechanisms for online services to restrict access based on user age.

    301 GitHub stars~3.7k tokensUpdated 6 mo ago
    Auto-check passed
  • AI Data Retention

    mukul975/Privacy-Data-Protection-Skills

    Manages AI model retention and machine unlearning requirements.

    301 GitHub stars~1.9k tokensUpdated 6 mo ago
    Auto-check passed
  • AI Dpia

    mukul975/Privacy-Data-Protection-Skills

    Conducts Data Protection Impact Assessments for AI and ML systems per EDPB Guidelines 04/2025 on AI processing.

    301 GitHub stars~3.4k tokensUpdated 6 mo ago
    Auto-check passed
  • Dpia Mitigation Plan

    mukul975/Privacy-Data-Protection-Skills

    Structures risk mitigation planning and residual risk tracking for Data Protection Impact Assessments under GDPR Article 35(7)(d).

    301 GitHub stars~846 tokensUpdated 6 mo ago
    Auto-check passed
  • Gdpr Accountability

    mukul975/Privacy-Data-Protection-Skills

    Guides implementation of the GDPR accountability principle under Articles 5(2) and 24, including documentation requirements for policies, DPIAs, RoPA, training records, and breach logs.

    301 GitHub stars~1.9k tokensUpdated 6 mo ago
    Auto-check passed
  • Pia Threshold Screening

    mukul975/Privacy-Data-Protection-Skills

    Conducts pre-DPIA threshold screening to determine whether a full Data Protection Impact Assessment is required under GDPR Article 35.

    301 GitHub stars~880 tokensUpdated 6 mo ago
    Auto-check passed

Questions about Eu Code Of Conduct

What does Eu Code Of Conduct do?

Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and…. Eu Code Of Conduct is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and complaint handling.

When should I use Eu Code Of Conduct?

Eu Code Of Conduct fits situations like: tasks that involve Policy and terms drafting; tasks that involve Privacy and GDPR.

How do I install Eu Code Of Conduct in Claude Code?

Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a claude-code`. Or copy the skill folder (skills/privacy/eu-code-of-conduct in mukul975/Privacy-Data-Protection-Skills) into .claude/skills/eu-code-of-conduct in your project. Claude Code loads it when a task matches its description.

How do I install Eu Code Of Conduct in Codex?

Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a codex`. Or copy the skill folder (skills/privacy/eu-code-of-conduct in mukul975/Privacy-Data-Protection-Skills) into .agents/skills/eu-code-of-conduct in your project. Codex loads it when a task matches its description.

Can I use Eu Code Of Conduct in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/eu-code-of-conduct, .gemini/skills/eu-code-of-conduct, .github/skills/eu-code-of-conduct and .opencode/skills/eu-code-of-conduct in your project.

What does Eu Code Of Conduct need to run?

Going by SKILL.md and its folder, Eu Code Of Conduct needs Python for the scripts in its folder. Our summary lists: Python 3.

Does Eu Code Of Conduct access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Eu Code Of Conduct safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Eu Code Of Conduct use?

Eu Code Of Conduct is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Eu Code Of Conduct use?

About 4.3k tokens (SKILL.md is roughly 17k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.1k tokens, read only when the agent opens those files.

What are the alternatives to Eu Code Of Conduct?

Skills that share tags, products or a category with Eu Code Of Conduct: Pii Contract Analyze (gregmos/PII-Shield, 150 stars), Privacy Eu (kimlawtech/korean-privacy-terms, 587 stars), Terms Of Service Generator (zubair-trabzada/ai-legal-claude, 1.8k stars) and Tos Clause Scanner (zebbern/claude-code-guide, 4.7k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Eu Code Of Conduct?

mukul975 (a GitHub user) maintains it in mukul975/Privacy-Data-Protection-Skills, which has 301 GitHub stars. The repository holds 280 skills in this directory. The repository was last updated on March 16, 2026.

Source: mukul975/Privacy-Data-Protection-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.