Pii Contract Analyze
gregmos/PII-Shield
Universal legal document processor with PII anonymization. An agent skill from gregmos/PII-Shield.
Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and…
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills eu-code-of-conduct --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/privacy/eu-code-of-conduct .claude/skills/eu-code-of-conduct && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "eu-code-of-conduct" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/eu-code-of-conduct into .claude/skills/eu-code-of-conduct/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "eu-code-of-conduct", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/eu-code-of-conductType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills eu-code-of-conduct --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/privacy/eu-code-of-conduct .agents/skills/eu-code-of-conduct && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "eu-code-of-conduct" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/eu-code-of-conduct into .agents/skills/eu-code-of-conduct/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "eu-code-of-conduct", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills eu-code-of-conduct --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/privacy/eu-code-of-conduct .cursor/skills/eu-code-of-conduct && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "eu-code-of-conduct" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/eu-code-of-conduct into .cursor/skills/eu-code-of-conduct/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "eu-code-of-conduct", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/mukul975/Privacy-Data-Protection-Skills.git --path skills/privacy/eu-code-of-conduct--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills eu-code-of-conduct --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/privacy/eu-code-of-conduct .gemini/skills/eu-code-of-conduct && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "eu-code-of-conduct" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/eu-code-of-conduct into .gemini/skills/eu-code-of-conduct/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "eu-code-of-conduct", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install mukul975/Privacy-Data-Protection-Skills eu-code-of-conductInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/privacy/eu-code-of-conduct .github/skills/eu-code-of-conduct && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "eu-code-of-conduct" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/eu-code-of-conduct into .github/skills/eu-code-of-conduct/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "eu-code-of-conduct", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install mukul975/Privacy-Data-Protection-Skills eu-code-of-conduct --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/privacy/eu-code-of-conduct .opencode/skills/eu-code-of-conduct && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "eu-code-of-conduct" agent skill from https://github.com/mukul975/Privacy-Data-Protection-Skills/tree/main/skills/privacy/eu-code-of-conduct into .opencode/skills/eu-code-of-conduct/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "eu-code-of-conduct", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
eu-code-of-conductGuides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and…
Eu Code Of Conduct is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and complaint handling. Covers sector-specific codes, transnational codes, and Art. 40(3) approval by supervisory authorities. Keywords: code of conduct, Article 40, Article 41, EDPB, monitoring body, adherence.
Its SKILL.md is about 4.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts, reference files and assets (for example `assets/template.md`, `references/standards.md` and `references/workflows.md`).
It sits in Legal & Compliance, covering Policy and terms drafting and Privacy and GDPR. The repository describes itself as: 282+ structured privacy & data protection skills for AI agents. GDPR, CCPA, EU AI Act, HIPAA, LGPD, PIPL, DPDP Act. The licence is Apache-2.0.
5 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 9b2ef9e. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 1 file in scripts/ (Python), which the agent can run.
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Eu Code Of Conduct loads about 4.3k tokens when it runs, and up to ~5.4k if it reads all its reference files. Until then it costs about 106 tokens; SKILL.md has 1,900 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from mukul975/Privacy-Data-Protection-Skills at commit 9b2ef9e, republished under its Apache-2.0 licence (© mukul975). 1,900 words, ~4,302 tokens.
.claude/skills/eu-code-of-conduct/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.Articles 40 and 41 of the GDPR encourage the drawing up of codes of conduct intended to contribute to the proper application of the GDPR, taking account of the specific features of the various processing sectors. A code of conduct approved under Art. 40 provides a demonstrable compliance mechanism that controllers and processors can adhere to, offering evidentiary weight during supervisory authority investigations and serving as a factor in administrative fine calculations under Art. 83(2)(j).
The EDPB adopted Guidelines 1/2019 on Codes of Conduct and Monitoring Bodies under Regulation 2016/679, providing detailed guidance on the approval process, content requirements, monitoring body accreditation, and adherence mechanisms. As of 2024, the EDPB has issued opinions on several transnational codes and national supervisory authorities have approved domestic codes across sectors including cloud computing, direct marketing, clinical trials, and credit information.
Sentinel Compliance Group adheres to two approved codes of conduct: the EU Cloud Code of Conduct (SCOPE Europe) for its cloud processing activities and a national code for direct marketing activities approved by the Belgian DPA.
Art. 40(1): Member States, supervisory authorities, the Board, and the Commission shall encourage the drawing up of codes of conduct intended to contribute to the proper application of the GDPR.
Art. 40(2): Codes of conduct may cover a wide range of processing areas:
| Area (Art. 40(2)) | Description | Example |
|---|---|---|
| (a) Fair and transparent processing | Processing principles implementation | Plain-language privacy notices for sector |
| (b) Legitimate interests | Balancing tests for specific sectors | Legitimate interest in fraud prevention for financial services |
| (c) Collection of personal data | Sector-specific collection standards | Minimum data sets for insurance applications |
| (d) Pseudonymisation | Sector pseudonymisation techniques | Patient data pseudonymisation in clinical trials |
| (e) Information to the public and data subjects | Standardised transparency measures | Layered notice templates for e-commerce |
| (f) Exercise of data subject rights | Sector-specific DSR procedures | Standardised portability formats for telecommunications |
| (g) Information and protection of children | Age verification and child protection | Age-appropriate design for educational technology |
| (h) Technical and organisational measures (Art. 24, 25) | Sector security baselines | Minimum encryption standards for health data processors |
| (i) Breach notification | Sector breach assessment criteria | Severity thresholds for financial data breaches |
| (j) International transfers | Transfer mechanisms via codes | Binding commitments in cloud codes for third-country transfers |
| (k) Dispute resolution and enforcement | Out-of-court mechanisms | Mediation procedures for marketing opt-out disputes |
Art. 40(3): Codes may be adhered to by controllers or processors not subject to the GDPR to provide appropriate safeguards for international transfers under Art. 46(2)(e), provided the code includes binding and enforceable commitments from the third-country controller or processor.
Art. 40(5): Draft codes must be submitted to the competent supervisory authority for approval. The supervisory authority provides an opinion on whether the code complies with the GDPR.
Art. 40(7): For transnational codes (covering processing activities in several Member States), the supervisory authority submits the draft to the EDPB, which issues an opinion. If the EDPB opinion is positive, the Board submits it to the Commission, which may adopt an implementing act giving general validity within the Union.
Art. 41(1): Monitoring of compliance with a code of conduct pursuant to Art. 40 may be carried out by a body which has an appropriate level of expertise in relation to the subject-matter of the code and is accredited for that purpose by the competent supervisory authority.
Art. 41(2): Accreditation requirements for monitoring bodies:
| Requirement | Description |
|---|---|
| Independence | Demonstrated independence from the profession and the code owner |
| Expertise | Appropriate level of expertise in the subject matter |
| Procedures | Established procedures for assessing eligibility, monitoring compliance, and reviewing adherence |
| Complaint handling | Procedures for handling complaints about infringements by code adherents |
| Transparency | Public information about monitoring activities and outcomes |
| No conflict of interest | Free from conflicts of interest that could impair monitoring objectivity |
Art. 41(4): The monitoring body may take appropriate action in cases of infringement, including suspension or exclusion of the controller or processor from the code. It shall inform the competent supervisory authority of such actions and reasons.
The EDPB requires approved codes to meet the following substantive criteria:
The code must provide specific, practical guidance beyond merely restating GDPR provisions:
1. Code Owner drafts code with stakeholder consultation
↓
2. Code Owner submits draft to competent Supervisory Authority
↓
3. Supervisory Authority assesses compliance with GDPR and EDPB Guidelines
↓
4. Supervisory Authority requests amendments (iterative process)
↓
5. Supervisory Authority approves the code (Art. 40(5))
↓
6. Supervisory Authority registers and publishes the code (Art. 40(6))
↓
7. Commission compiles approved codes in a register (Art. 40(11))1. Code Owner drafts code with multi-country stakeholder consultation
↓
2. Code Owner submits draft to the lead Supervisory Authority
↓
3. Lead Supervisory Authority conducts initial assessment
↓
4. Lead Supervisory Authority submits draft to EDPB for opinion (Art. 40(7))
↓
5. EDPB Secretariat circulates to all concerned Supervisory Authorities
↓
6. EDPB issues opinion (positive, positive with conditions, or negative)
↓
7. If positive: Lead Supervisory Authority approves the code
↓
8. Commission may adopt implementing act giving general validity (Art. 40(9))| Function | Description | Frequency |
|---|---|---|
| Eligibility Assessment | Evaluate new adherence applications against code requirements | Upon application |
| Compliance Monitoring | Conduct periodic compliance assessments of adherents | Annual at minimum |
| Complaint Investigation | Investigate data subject complaints about adherent practices | Upon receipt |
| Corrective Action | Require adherents to remediate non-compliance | As needed |
| Enforcement | Suspend or exclude non-compliant adherents | As needed |
| Reporting | Report monitoring activities to the supervisory authority | Annual |
| Code Review | Recommend code amendments based on monitoring experience | Periodic |
The monitoring body assesses adherent compliance through:
The organization must maintain:
| Document | Purpose | Update Frequency |
|---|---|---|
| Adherence Declaration | Formal commitment to comply with all code requirements | Upon adherence, renewed annually |
| Compliance Matrix | Mapping of code requirements to organizational controls | Updated upon changes |
| Evidence Portfolio | Supporting documentation for each code requirement | Maintained continuously |
| Annual Compliance Report | Self-assessment of continued compliance | Annual |
| Incident Notifications | Reports of code compliance failures to the monitoring body | Within defined timeframes |
The monitoring body conducts annual compliance assessments of each adherent:
Assessment Scope:
Assessment Outcomes:
| Outcome | Criteria | Consequence |
|---|---|---|
| Compliant | All code requirements met | Continued adherence, next assessment in 12 months |
| Conditionally Compliant | Minor gaps identified | Remediation required within 90 days, follow-up assessment |
| Non-Compliant | Material gaps in one or more code requirements | Corrective action plan required; suspension if not remediated within defined timeframe |
| Excluded | Repeated or severe non-compliance | Removal from code adherent register, notification to supervisory authority |
When a data subject complaint is received:
© mukul975, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 4 other files (scripts, references, assets) in skills/privacy/eu-code-of-conduct of mukul975/Privacy-Data-Protection-Skills.
Open the folder on GitHubat commit 9b2ef9e
Eu Code Of Conduct next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Eu Code Of Conduct this skillmukul975/Privacy-Data-Protection-Skills | 301 | — | ~4.3k | Automated safety check: Pass | Apache-2.0 | |
| Pii Contract Analyzegregmos/PII-Shield | 150 | — | ~8.9k | Automated safety check: Notes | MIT | |
| Privacy Eukimlawtech/korean-privacy-terms | 587 | — | ~968 | Automated safety check: Pass | Apache-2.0 | |
| Terms Of Service Generatorzubair-trabzada/ai-legal-claude | 1.8k | — | ~2.9k | Automated safety check: Pass | None | |
| Tos Clause Scannerzebbern/claude-code-guide | 4.7k | 1 repos | ~3.3k | Automated safety check: Pass | MIT | |
| Legal Advisoraiskillstore/marketplace | 433 | 9 repos | ~615 | Automated safety check: Pass | None |
gregmos/PII-Shield
Universal legal document processor with PII anonymization. An agent skill from gregmos/PII-Shield.
kimlawtech/korean-privacy-terms
EU 사용자 대상 서비스용 Privacy Notice·Terms of Service·Consent Modal·Cookie Banner 자동 생성.
zubair-trabzada/ai-legal-claude
Generates complete, GDPR/CCPA-compliant Terms of Service for a website or SaaS product, with plain English summaries for each section
zebbern/claude-code-guide
Audit Terms of Service, user agreements, and privacy policies for consumer risks, producing a structured report that flags unfair clauses, data traps, and liability issues.
aiskillstore/marketplace
Draft privacy policies, terms of service, disclaimers, and legal notices.
theopenco/llmgateway
Edit LLM Gateway legal documents — Terms of Use, Privacy Policy, sub-processors, and product-specific supplemental terms such as DevPass.
mukul975/Privacy-Data-Protection-Skills
Implements age-gating mechanisms for online services to restrict access based on user age.
mukul975/Privacy-Data-Protection-Skills
Manages AI model retention and machine unlearning requirements.
mukul975/Privacy-Data-Protection-Skills
Conducts Data Protection Impact Assessments for AI and ML systems per EDPB Guidelines 04/2025 on AI processing.
mukul975/Privacy-Data-Protection-Skills
Structures risk mitigation planning and residual risk tracking for Data Protection Impact Assessments under GDPR Article 35(7)(d).
mukul975/Privacy-Data-Protection-Skills
Guides implementation of the GDPR accountability principle under Articles 5(2) and 24, including documentation requirements for policies, DPIAs, RoPA, training records, and breach logs.
mukul975/Privacy-Data-Protection-Skills
Conducts pre-DPIA threshold screening to determine whether a full Data Protection Impact Assessment is required under GDPR Article 35.
Categories
Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and…. Eu Code Of Conduct is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides EU Code of Conduct adherence under GDPR Articles 40-41 including EDPB approval requirements, monitoring body accreditation, code drafting, adherence declaration, compliance verification, and complaint handling.
Eu Code Of Conduct fits situations like: tasks that involve Policy and terms drafting; tasks that involve Privacy and GDPR.
Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a claude-code`. Or copy the skill folder (skills/privacy/eu-code-of-conduct in mukul975/Privacy-Data-Protection-Skills) into .claude/skills/eu-code-of-conduct in your project. Claude Code loads it when a task matches its description.
Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a codex`. Or copy the skill folder (skills/privacy/eu-code-of-conduct in mukul975/Privacy-Data-Protection-Skills) into .agents/skills/eu-code-of-conduct in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill eu-code-of-conduct -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/eu-code-of-conduct, .gemini/skills/eu-code-of-conduct, .github/skills/eu-code-of-conduct and .opencode/skills/eu-code-of-conduct in your project.
Going by SKILL.md and its folder, Eu Code Of Conduct needs Python for the scripts in its folder. Our summary lists: Python 3.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Eu Code Of Conduct is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 4.3k tokens (SKILL.md is roughly 17k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.1k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Eu Code Of Conduct: Pii Contract Analyze (gregmos/PII-Shield, 150 stars), Privacy Eu (kimlawtech/korean-privacy-terms, 587 stars), Terms Of Service Generator (zubair-trabzada/ai-legal-claude, 1.8k stars) and Tos Clause Scanner (zebbern/claude-code-guide, 4.7k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
mukul975 (a GitHub user) maintains it in mukul975/Privacy-Data-Protection-Skills, which has 301 GitHub stars. The repository holds 280 skills in this directory. The repository was last updated on March 16, 2026.
Source: mukul975/Privacy-Data-Protection-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.