Agent skill

Hr System Privacy Config

by mukul975 in mukul975/Privacy-Data-Protection-Skills

Configures privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR.

Apache-2.0Auto-check passedBackend & APIs

Install Hr System Privacy Config

skills CLI
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill hr-system-privacy-config -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install mukul975/Privacy-Data-Protection-Skills hr-system-privacy-config --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/privacy/hr-system-privacy-config .claude/skills/hr-system-privacy-config && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
hr-system-privacy-config
GitHub stars
301
Token cost
~4.7k tokens
SKILL.md length
2,218 words
Files
5 (incl. scripts, references, assets)
Skills in repo
280
Repo updated
First seen
Licence
Apache-2.0

At a glance

Configures privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR.

  • Works in 4 steps: Permission Roles: Create roles… → Permission Groups: Define target… → Field-Level Permissions: For each role,… → …
  • Tasks that involve Authorization and RBAC
  • SKILL.md covers Overview, Cross-Platform Privacy…, SAP SuccessFactors Configuration and Workday Configuration, plus 5 more sections
  • Runs Python scripts from its folder

What it does

Hr System Privacy Config is an agent skill from mukul975/Privacy-Data-Protection-Skills. Configures privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR. Covers role-based access controls, automated data retention enforcement, cross-border transfer configurations, audit logging, data subject rights facilitation, and field-level security. Keywords: HR system, SAP SuccessFactors, Workday, BambooHR, RBAC, retention automation, cross-border transfer, privacy configuration.

Its SKILL.md is about 4.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts, reference files and assets (for example `assets/template.md`, `references/standards.md` and `references/workflows.md`).

It sits in Backend & APIs, covering Authorization and RBAC, Privacy and GDPR and Recruiting and HR. It works with Workday. The repository describes itself as: 282+ structured privacy & data protection skills for AI agents. GDPR, CCPA, EU AI Act, HIPAA, LGPD, PIPL, DPDP Act. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Authorization and RBAC
  • Tasks that involve Privacy and GDPR
  • Tasks that involve Recruiting and HR

Example prompts

  • “Use the hr-system-privacy-config skill to configure privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR”
  • “/hr-system-privacy-config”

Requirements

  • Python 3

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. Permission Roles: Create roles corresponding to the RBAC matrix (Employee Self-Service, Line Manager, HR BP, Payroll, Benefits Admin, IT…
  2. Permission Groups: Define target populations for each role (e.g., Line Manager sees direct reports only; HR BP sees client group employees)
  3. Field-Level Permissions: For each role, configure read/write/no-access at the individual field level
  4. IP Restriction: Restrict admin access to corporate network IP ranges

What it can do on your machine

Read from SKILL.md and the folder at commit 9b2ef9e. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Python), which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Hr System Privacy Config loads about 4.7k tokens when it runs, and up to ~6.3k if it reads all its reference files. Until then it costs about 113 tokens; SKILL.md has 2,218 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~113
When it runs · the whole SKILL.md, loaded when a task matches
~4.7k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~6.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from mukul975/Privacy-Data-Protection-Skills at commit 9b2ef9e, republished under its Apache-2.0 licence (© mukul975). 2,218 words, ~4,653 tokens.

Download SKILL.mdSave it as .claude/skills/hr-system-privacy-config/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
hr-system-privacy-config
description
Configures privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR. Covers role-based access controls, automated data retention enforcement, cross-border transfer configurations, audit logging, data subject rights facilitation, and field-level security. Keywords: HR system, SAP SuccessFactors, Workday, BambooHR, RBAC, retention automation, cross-border transfer, privacy configuration.
license
Apache-2.0
metadata.author
mukul975
metadata.version
1.0
metadata.domain
privacy
metadata.subdomain
employee-data-privacy
metadata.tags
hr-system, sap-successfactors, workday, bamboohr, rbac, retention-automation, privacy-config

HR System Privacy Configuration

Overview

Enterprise HR systems are the central repository for employee personal data, processing everything from recruitment to retirement. Systems like SAP SuccessFactors, Workday, and BambooHR contain names, addresses, national identifiers, salary data, performance evaluations, absence records, health-related fitness conclusions, disciplinary records, and benefits information. The default configuration of these systems is designed for operational efficiency, not GDPR compliance. Privacy professionals must actively configure role-based access controls, data retention automation, cross-border transfer settings, audit logging, and field-level security to ensure that the HR system enforces — rather than merely documents — privacy requirements.

This skill provides configuration guidance for the three most widely deployed HR platforms, focusing on the privacy-critical settings that determine who can see what data, how long data is retained, and how data subject rights are facilitated.

Cross-Platform Privacy Requirements

Requirement 1: Role-Based Access Controls (RBAC)

Principle: No employee should have access to more HR data than is necessary for their specific role. Line managers need access to their direct reports' data; HR business partners need access to their client group; payroll needs salary and tax data; IT administrators need system access but not data content.

Standard RBAC Matrix:

RolePersonal DetailsSalary/CompensationPerformance ReviewsAbsence RecordsHealth DataDisciplinary RecordsRecruitment Data
Employee (self)FullOwn salary onlyOwn reviewsOwn absenceOwn OH reportsOwn recordsOwn application
Line ManagerDirect reports: name, contact, role, start dateNo (unless approval workflow)Direct reports onlyDirect reports: dates only (no diagnosis)NoNo (unless involved in process)Hiring manager: interview candidates
HR Business PartnerClient group: fullClient group: fullClient group: fullClient group: dates + fit note statusFit/unfit conclusion onlyClient group: fullClient group: all candidates
PayrollMinimal: name, employee ID, bank details, tax codeFull: all employeesNoStatutory sick pay relevant data onlyNoNoNo
Benefits AdministratorName, employee ID, enrolment selectionsSalary bands (for benefits calculation)NoNoNoNoNo
IT AdministratorSystem access management: name, employee ID, department, emailNoNoNoNoNoNo
DPOAudit access to all processing records; no routine access to individual dataAudit onlyAudit onlyAudit onlyAudit onlyAudit onlyAudit only
Senior LeadershipAggregate reports onlyAggregate/anonymisedAggregate/anonymisedAggregate/anonymisedNoNoNo
Requirement 2: Data Retention Automation

Principle: Data should be automatically deleted or anonymised when the retention period expires. Manual deletion is unreliable and non-compliant.

Standard Retention Schedule for HR Data:

Data CategoryRetention TriggerRetention PeriodPost-Retention Action
Recruitment — unsuccessful candidatesApplication decision date6 months (12 months where discrimination claim risk)Delete application, CV, interview notes, assessment scores
Employment contractTermination date6 years post-termination (contractual claim limitation)Delete or archive to restricted storage
Payroll and tax recordsEnd of tax year6-7 years (varies by jurisdiction)Delete
Performance reviewsTermination date2 years post-termination (unless ongoing dispute)Delete
Absence recordsEnd of absence year2 years current + 1 year archiveDelete detail; retain aggregate statistics
Disciplinary recordsOutcome datePer policy: warnings expire after 6-12 months; dismissal records 6 yearsDelete expired warnings; retain dismissal records for limitation period
Health/occupational health recordsTermination date or end of health surveillanceVaries: standard employment 6 years; occupational health surveillance 40 years (asbestos, radiation)Transfer to occupational health archive
Training recordsTermination date3 years post-terminationDelete
DSAR response recordsResponse date2 yearsDelete copies; retain log entry
Requirement 3: Cross-Border Transfer Configuration

For multinational organisations, HR systems transfer employee data across borders. Each transfer must comply with Chapter V GDPR.

Transfer scenarios requiring configuration:

ScenarioTransfer MechanismSystem Configuration
EU headquarters → EU subsidiaryNo restriction (intra-EEA)Ensure data residency within EEA data centres
EU headquarters → UK subsidiaryUK adequacy decision (valid until June 2025, extended)Configure UK entity as adequate recipient
EU headquarters → US subsidiaryEU-US Data Privacy Framework (where US entity is certified) or SCCsVerify DPF certification; configure SCC-based transfer if not certified
EU entity → cloud HR provider (US-hosted)DPF + SCCs + supplementary measuresVerify provider DPF status; enable encryption; configure data residency if available
EU entity → India/Philippines shared servicesSCCs + TIAImplement SCCs; conduct Transfer Impact Assessment; enable supplementary measures
Requirement 4: Audit Logging

Mandatory audit events:

EventLog ContentRetention
Data accessWho accessed which employee's record, when, from where2 years
Data modificationWho changed what field, old value, new value, when2 years
Data exportWho exported data, scope, format, destination2 years
Report generationWho ran what report, parameters, number of records2 years
Access permission changesWho granted/revoked access, to whom, scope3 years
Data deletionWhat was deleted, by whom, automated or manualPermanent (audit trail survives data deletion)
Failed access attemptsWho attempted to access data they were not authorised to see1 year

SAP SuccessFactors Configuration

Role-Based Permissions

SuccessFactors uses a Role-Based Permissions (RBP) framework:

  1. Permission Roles: Create roles corresponding to the RBAC matrix (Employee Self-Service, Line Manager, HR BP, Payroll, Benefits Admin, IT Admin, DPO Audit)
  2. Permission Groups: Define target populations for each role (e.g., Line Manager sees direct reports only; HR BP sees client group employees)
  3. Field-Level Permissions: For each role, configure read/write/no-access at the individual field level
    • Health data fields: No access for all roles except HR BP (read-only for fit/unfit fields) and Employee (own data)
    • Salary fields: No access for Line Manager, IT Admin; read-only for HR BP; read-write for Payroll
    • Disciplinary fields: No access for Line Manager (unless party to process), read-only for HR BP
  4. IP Restriction: Restrict admin access to corporate network IP ranges
Data Retention Management (DRM)

SuccessFactors provides a Data Retention Management module:

  1. Purge Rules: Configure automated purge rules per data category:
    • Inactive employees: purge personal data X years after termination date (configure per retention schedule)
    • Recruitment: purge unsuccessful candidate data after configured period
    • Performance: purge historical reviews per retention policy
  2. Data Purge Requests: Create purge requests targeting specific employee populations based on termination date
  3. Anonymisation: Where full deletion is not possible (e.g., data required for aggregate reporting), configure anonymisation to replace personal identifiers with pseudonyms
  4. Audit Trail: DRM maintains an audit trail of all purge activities, including what was deleted and by whom
Cross-Border Data Handling
  1. Data Centre Selection: SuccessFactors operates data centres in the EU (Germany, Netherlands), UK, US, and APAC. Configure the instance to use the EU data centre for EEA employee data
  2. Employee Central Global Assignment: For international assignments, configure transfer rules that apply appropriate safeguards when data moves between legal entities in different jurisdictions
  3. Integration Centre: API integrations that export employee data to third-party systems must be configured with data residency restrictions
DSAR Facilitation
  1. Personal Data Report: SuccessFactors provides a Personal Data Report feature that compiles all data fields containing the requesting employee's personal data
  2. Data Subject Request Tool: Automated workflow for receiving, tracking, and responding to DSARs with configurable deadlines and escalation
  3. Right to Erasure: The system supports targeted deletion of specific employee records while maintaining the audit trail

Workday Configuration

Security Groups

Workday uses a Security Group model:

  1. Role-Based Security Groups: Map to the RBAC matrix:
    • Manager: inherits based on supervisory organisation
    • HR Partner: assigned to specific supervisory organisations
    • Payroll Administrator: assigned to specific companies/pay groups
    • Benefits Administrator: assigned to benefit groups
  2. Domain Security Policies: Control access to functional areas (Compensation, Talent, Absence, Recruitment) independently
  3. Field-Level Security: Configure visibility and editability per field per security group
  4. Segment-Based Security: Restrict access to specific employee segments (e.g., executives, works council members, employees under investigation)
Business Process Security

Workday business processes (hire, promote, terminate, compensation change) have their own security:

  1. Initiator permissions: Who can start the process
  2. Approval chain: Who must approve at each step
  3. Notification restrictions: Who is notified (avoid sending sensitive data in email notifications)
  4. Document attachment security: Restrict who can view supporting documents (offer letters, performance evidence)
Show full SKILL.md (908 more words)Show less
Data Retention

Workday provides Data Purge functionality:

  1. Purge Framework: Configure purge rules by data type and retention period
  2. Worker History Purge: Systematically remove historical data for terminated workers after the retention period
  3. Recruitment Purge: Automatically delete unsuccessful candidate records
  4. Archive and Purge: Move data to archive before permanent deletion, allowing recovery within a grace period
Cross-Border Transfers
  1. Tenant Configuration: Workday allows configuration of data residency at the tenant level
  2. Multi-Region Deployment: Large enterprises may have separate tenants for different regions
  3. Integration Security: Workday integrations (HCM, Payroll, Benefits) that transfer data across borders must be assessed under the TIA framework

BambooHR Configuration

Access Levels

BambooHR uses a simpler access model suitable for small to medium enterprises:

  1. Access Levels: Pre-defined levels (Employee Self-Service, Manager, HR Admin, Payroll Admin, No Access) plus custom levels
  2. Field Visibility: Each access level defines which fields are visible and editable
  3. Custom Access Levels: Create privacy-compliant custom levels:
    • DPO Audit: Read-only access to processing records and audit logs, no access to individual employee data
    • Restricted HR: Access to specific employee populations only
    • Benefits Only: Access to benefits fields only
Reporting Restrictions
  1. Report Filters: Configure default report filters to prevent inadvertent disclosure (e.g., reports automatically exclude health data fields)
  2. Custom Reports: Restrict who can create custom reports (custom reports can bypass field visibility if not properly configured)
  3. Data Export: Restrict CSV/Excel export permissions to authorised roles only
Retention Configuration

BambooHR provides:

  1. Inactive Employee Management: Configure rules for archiving and deleting terminated employee records
  2. Document Purge: Automated deletion of uploaded documents (offer letters, ID copies, certificates) after configured retention period
  3. Application Tracking Purge: Delete unsuccessful candidate data after configured period

Privacy Configuration Checklist

Initial Setup
  • Map organisational roles to HR system security roles/groups
  • Configure field-level access for each role per RBAC matrix
  • Restrict health data fields to authorised roles only
  • Restrict salary/compensation fields to authorised roles
  • Configure manager access to direct reports only (not entire organisation)
  • Disable default admin access to personal data content
  • Enable audit logging for all data access, modification, and export events
Data Retention
  • Configure automated purge rules for each data category
  • Set retention triggers (termination date, application decision date, etc.)
  • Test purge rules in sandbox environment before production deployment
  • Verify that purge rules maintain required audit trails
  • Configure anonymisation for data required for aggregate reporting post-retention
Cross-Border Transfers
  • Verify data centre location for EEA employee data
  • Assess all integrations that transfer data outside the EEA
  • Implement SCCs or verify DPF certification for US transfers
  • Conduct TIA for transfers to non-adequate countries
  • Configure data residency restrictions on APIs and integrations
DSAR Compliance
  • Test the system's ability to export a complete copy of an individual's data
  • Verify that the export includes all modules (core HR, performance, absence, recruitment)
  • Configure DSAR workflow with deadline tracking and escalation
  • Test rectification capability: can specific fields be corrected without system integrity issues?
  • Test erasure capability: can individual records be deleted while maintaining referential integrity?
Ongoing Monitoring
  • Schedule quarterly access reviews — review who has access to what
  • Review audit logs monthly for anomalous access patterns
  • Test retention automation quarterly — verify that purge rules execute correctly
  • Review security configuration after system upgrades (upgrades may reset security settings)
  • Conduct annual privacy assessment of HR system configuration

Atlas Manufacturing Group Example

Atlas Manufacturing Group uses SAP SuccessFactors for 2,400 employees across Germany, France, UK, and the Netherlands. The DPO conducted a privacy configuration audit and identified the following issues:

  1. Over-broad manager access: Line managers had read access to salary data for all employees in their department, not just direct reports. Remediation: Reconfigured RBP to limit manager access to direct reports only.
  2. No automated retention: Terminated employee data was retained indefinitely. Remediation: Implemented DRM purge rules — personal data purged 6 years after termination, with 40-year retention for occupational health records of employees in the chemical production unit.
  3. Cross-border transfer gap: The SuccessFactors integration with a US-based benefits provider was transferring employee data without SCCs. Remediation: Verified the benefits provider's DPF certification and implemented supplementary encryption measures.
  4. Missing audit logging: Data exports to Excel were not logged. Remediation: Enabled export audit logging and restricted export permissions to HR BP and Payroll roles.
  5. Health data visibility: The absence management module displayed the "reason for absence" field (which sometimes contained health information) to line managers. Remediation: Removed reason field visibility for managers; managers see absence dates and type (sick, annual leave, other) only.

Enforcement Precedents

AuthorityCaseFine/OutcomeKey Issue
LfDI Hamburg (Germany)H&M, 2020EUR 35,258,707.95HR system used to record excessive employee health and personal data; insufficient access controls
CNIL (France)Dedalus Biologie, 2022EUR 1,500,000Insufficient access controls on health data in information systems
ICO (UK)British Airways, 2020GBP 20,000,000Insufficient technical and organisational measures — includes system access controls
AEPD (Spain)CaixaBank, 2021EUR 6,000,000Insufficient granularity in access controls for personal data systems
Autoriteit Persoonsgegevens (NL)2022 AuditCorrective measuresHR system retained terminated employee data beyond retention period

Integration Points

  • Employee DSAR Response: HR system must support data export for DSARs (see employee-dsar-response skill).
  • Employee Health Data: Health data fields require dedicated access controls (see employee-health-data skill).
  • Employee Biometric Data: Biometric integration with timekeeping requires privacy configuration (see employee-biometric-data skill).
  • Background Check Privacy: Background check data storage must comply with retention limits (see background-check-privacy skill).
  • Remote Work Monitoring: HR system integration with monitoring tools must respect data separation (see remote-work-monitoring skill).

© mukul975, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (scripts, references, assets) in skills/privacy/hr-system-privacy-config of mukul975/Privacy-Data-Protection-Skills.

  • SKILL.md
  • assets/template.md
  • references/standards.md
  • references/workflows.md
  • scripts/process.py

Open the folder on GitHubat commit 9b2ef9e

Compare with similar skills

Hr System Privacy Config next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Hr System Privacy Config compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Hr System Privacy Config this skillmukul975/Privacy-Data-Protection-Skills301—~4.7kAutomated safety check: PassApache-2.0
Reviewing Security Architecturebitwarden/ai-plugins155—~2.2kAutomated safety check: PassCustom licence
Fondo Security Basicsjeremylongshore/tons-of-skills-marketplace2.8k—~1.2kAutomated safety check: PassMIT
Healthcare Phi Complianceaffaan-m/ECC277k1 repos~1.4kAutomated safety check: PassMIT
Configuring Horizoncoollabsio/coolify63k4 repos~898Automated safety check: PassMIT
K8s Security PoliciesCybereason-Public/owLSM28012 repos~2kAutomated safety check: PassGPL-2.0

Similar skills

  • Official

    This skill should be used when the user asks to "review the security architecture", "check authentication patterns", "evaluate trust boundaries", "review encryption implementation", "assess…

    155 GitHub stars~2.2k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Fondo Security Basics

    jeremylongshore/tons-of-skills-marketplace

    Apply security best practices for Fondo including OAuth token management, financial data protection, SOC 2 compliance, and access control.

    2.8k GitHub stars~1.2k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Protected Health Information (PHI) and PII compliance patterns for healthcare applications: data classification, row-level access control, tamper-proof audit trails, schema tagging, and common leak…

    277k GitHub starsUsed in 1 repo~1.4k tokens
    Legal & ComplianceAuto-check passed
  • Configuring Horizon

    coollabsio/coolify

    A skill your agent uses whenever the user mentions Horizon by name in a Laravel context.

    63k GitHub starsUsed in 4 repos~898 tokens
    Backend & APIsAuto-check passed
  • K8s Security Policies

    Cybereason-Public/owLSM

    Comprehensive guide for implementing NetworkPolicy, PodSecurityPolicy, RBAC, and Pod Security Standards in Kubernetes.

    280 GitHub starsUsed in 12 repos~2k tokens
    Backend & APIsAuto-check passed
  • Payload

    payloadcms/payload

    A skill your agent uses when working with Payload projects (payload.config.ts, collections, fields, hooks, access control, Payload API).

    45k GitHub starsUsed in 5 repos~6.2k tokens
    Backend & APIsAuto-check passed

More from mukul975/Privacy-Data-Protection-Skills

All 280 skills in this repo
  • Age Gating Services

    mukul975/Privacy-Data-Protection-Skills

    Implements age-gating mechanisms for online services to restrict access based on user age.

    301 GitHub stars~3.7k tokensUpdated 6 mo ago
    Auto-check passed
  • AI Data Retention

    mukul975/Privacy-Data-Protection-Skills

    Manages AI model retention and machine unlearning requirements.

    301 GitHub stars~1.9k tokensUpdated 6 mo ago
    Auto-check passed
  • AI Dpia

    mukul975/Privacy-Data-Protection-Skills

    Conducts Data Protection Impact Assessments for AI and ML systems per EDPB Guidelines 04/2025 on AI processing.

    301 GitHub stars~3.4k tokensUpdated 6 mo ago
    Auto-check passed
  • Dpia Mitigation Plan

    mukul975/Privacy-Data-Protection-Skills

    Structures risk mitigation planning and residual risk tracking for Data Protection Impact Assessments under GDPR Article 35(7)(d).

    301 GitHub stars~846 tokensUpdated 6 mo ago
    Auto-check passed
  • Gdpr Accountability

    mukul975/Privacy-Data-Protection-Skills

    Guides implementation of the GDPR accountability principle under Articles 5(2) and 24, including documentation requirements for policies, DPIAs, RoPA, training records, and breach logs.

    301 GitHub stars~1.9k tokensUpdated 6 mo ago
    Auto-check passed
  • Pia Threshold Screening

    mukul975/Privacy-Data-Protection-Skills

    Conducts pre-DPIA threshold screening to determine whether a full Data Protection Impact Assessment is required under GDPR Article 35.

    301 GitHub stars~880 tokensUpdated 6 mo ago
    Auto-check passed

Works with

Categories

Questions about Hr System Privacy Config

What does Hr System Privacy Config do?

Configures privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR. Hr System Privacy Config is an agent skill from mukul975/Privacy-Data-Protection-Skills. Configures privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR.

When should I use Hr System Privacy Config?

Hr System Privacy Config fits situations like: tasks that involve Authorization and RBAC; tasks that involve Privacy and GDPR; tasks that involve Recruiting and HR.

How do I install Hr System Privacy Config in Claude Code?

Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill hr-system-privacy-config -a claude-code`. Or copy the skill folder (skills/privacy/hr-system-privacy-config in mukul975/Privacy-Data-Protection-Skills) into .claude/skills/hr-system-privacy-config in your project. Claude Code loads it when a task matches its description.

How do I install Hr System Privacy Config in Codex?

Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill hr-system-privacy-config -a codex`. Or copy the skill folder (skills/privacy/hr-system-privacy-config in mukul975/Privacy-Data-Protection-Skills) into .agents/skills/hr-system-privacy-config in your project. Codex loads it when a task matches its description.

Can I use Hr System Privacy Config in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill hr-system-privacy-config -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/hr-system-privacy-config, .gemini/skills/hr-system-privacy-config, .github/skills/hr-system-privacy-config and .opencode/skills/hr-system-privacy-config in your project.

What does Hr System Privacy Config need to run?

Going by SKILL.md and its folder, Hr System Privacy Config needs Python for the scripts in its folder. Our summary lists: Python 3.

Does Hr System Privacy Config access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Hr System Privacy Config safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Hr System Privacy Config use?

Hr System Privacy Config is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Hr System Privacy Config use?

About 4.7k tokens (SKILL.md is roughly 19k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.7k tokens, read only when the agent opens those files.

What are the alternatives to Hr System Privacy Config?

Skills that share tags, products or a category with Hr System Privacy Config: Reviewing Security Architecture (bitwarden/ai-plugins, 155 stars), Fondo Security Basics (jeremylongshore/tons-of-skills-marketplace, 2.8k stars), Healthcare Phi Compliance (affaan-m/ECC, 277k stars) and Configuring Horizon (coollabsio/coolify, 63k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Hr System Privacy Config?

mukul975 (a GitHub user) maintains it in mukul975/Privacy-Data-Protection-Skills, which has 301 GitHub stars. The repository holds 280 skills in this directory. The repository was last updated on March 16, 2026.

Source: mukul975/Privacy-Data-Protection-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.