Agent skill

India Dpdp Act

by mukul975 in mukul975/Privacy-Data-Protection-Skills

Guides compliance with India's Digital Personal Data Protection Act 2023.

Apache-2.0Auto-check passedLegal & Compliance

Install India Dpdp Act

skills CLI
$ npx skills add mukul975/Privacy-Data-Protection-Skills --skill india-dpdp-act -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install mukul975/Privacy-Data-Protection-Skills india-dpdp-act --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/mukul975/Privacy-Data-Protection-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/privacy/india-dpdp-act .claude/skills/india-dpdp-act && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
india-dpdp-act
GitHub stars
301
Token cost
~3.8k tokens
SKILL.md length
1,859 words
Files
5 (incl. scripts, references, assets)
Skills in repo
280
Repo updated
First seen
Licence
Apache-2.0

At a glance

Guides compliance with India's Digital Personal Data Protection Act 2023.

  • Works in 3 steps: Description of personal data to be… → How the data principal may exercise… → How the data principal may make a…
  • Tasks that involve Privacy and GDPR
  • SKILL.md covers Overview, Key Definitions, Data Fiduciary Obligations… and Consent Manager Framework…, plus 6 more sections
  • Runs Python scripts from its folder

What it does

India Dpdp Act is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides compliance with India's Digital Personal Data Protection Act 2023. Covers consent manager registration, data fiduciary obligations under Sections 4-7, significant data fiduciary requirements under Section 10, data principal rights, and Board enforcement framework. Keywords: DPDP Act, India data protection, consent manager, data fiduciary, significant data fiduciary, data principal rights.

Its SKILL.md is about 3.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts, reference files and assets (for example `assets/template.md`, `references/standards.md` and `references/workflows.md`).

It sits in Legal & Compliance, covering Privacy and GDPR. The repository describes itself as: 282+ structured privacy & data protection skills for AI agents. GDPR, CCPA, EU AI Act, HIPAA, LGPD, PIPL, DPDP Act. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Privacy and GDPR

Example prompts

  • “Use the india-dpdp-act skill to guide compliance with India's Digital Personal Data Protection Act 2023”
  • “/india-dpdp-act”

Requirements

  • Python 3

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Description of personal data to be processed and the purpose of processing
  2. How the data principal may exercise rights (complaint to Board, grievance redressal)
  3. How the data principal may make a complaint to the Board

What it can do on your machine

Read from SKILL.md and the folder at commit 9b2ef9e. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Python), which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

India Dpdp Act loads about 3.8k tokens when it runs, and up to ~7.1k if it reads all its reference files. Until then it costs about 103 tokens; SKILL.md has 1,859 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~103
When it runs · the whole SKILL.md, loaded when a task matches
~3.8k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~7.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from mukul975/Privacy-Data-Protection-Skills at commit 9b2ef9e, republished under its Apache-2.0 licence (© mukul975). 1,859 words, ~3,794 tokens.

Download SKILL.mdSave it as .claude/skills/india-dpdp-act/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
india-dpdp-act
description
Guides compliance with India's Digital Personal Data Protection Act 2023. Covers consent manager registration, data fiduciary obligations under Sections 4-7, significant data fiduciary requirements under Section 10, data principal rights, and Board enforcement framework. Keywords: DPDP Act, India data protection, consent manager, data fiduciary, significant data fiduciary, data principal rights.
license
Apache-2.0
metadata.author
mukul975
metadata.version
1.0
metadata.domain
privacy
metadata.subdomain
global-privacy-regulations
metadata.tags
dpdp-act, india-data-protection, consent-manager, data-fiduciary, data-principal

India DPDP Act 2023 Compliance

Overview

The Digital Personal Data Protection Act, 2023 (DPDP Act) received Presidential assent on 11 August 2023 and was notified in the Gazette of India as Act No. 22 of 2023. The DPDP Act establishes India's first comprehensive personal data protection framework, replacing the data protection provisions of the Information Technology Act, 2000 (Section 43A and the Sensitive Personal Data or Information Rules, 2011). The Act applies to digital personal data processing within India and to processing outside India if it involves offering goods or services to data principals in India (Section 3).

The Data Protection Board of India (DPBI) is established under Section 18 as the adjudicatory body for enforcement. The Central Government retains rule-making authority under Section 40 to prescribe detailed implementing rules.

Status as of March 2026: The Central Government has published draft DPDP Rules for public consultation. Several provisions await final notification of the rules for full operationalisation.

Key Definitions

TermDefinitionDPDP Act Section
Data PrincipalThe individual to whom the personal data relates; for children (under 18), the parent/lawful guardianSection 2(j)
Data FiduciaryAny person who alone or in conjunction with others determines the purpose and means of processing personal dataSection 2(i)
Data ProcessorAny person who processes personal data on behalf of a data fiduciarySection 2(k)
Consent ManagerA person registered with the Board who acts as a single point of contact for the data principal to manage consentSection 2(g)
Significant Data FiduciaryA data fiduciary designated as such by the Central Government based on prescribed criteriaSection 10
Personal DataAny data about an individual who is identifiable by or in relation to such dataSection 2(t)

Data Fiduciary Obligations (Sections 4-7)

Section 4: Grounds for Processing

Personal data may be processed only for a lawful purpose and only with the consent of the data principal or for certain legitimate uses.

GroundSectionDetail
ConsentSection 6Free, specific, informed, unconditional, unambiguous consent with clear affirmative action
Legitimate usesSection 7Seven specified legitimate use categories (see below)

Before collecting consent, the data fiduciary must provide notice to the data principal containing:

  1. Description of personal data to be processed and the purpose of processing
  2. How the data principal may exercise rights (complaint to Board, grievance redressal)
  3. How the data principal may make a complaint to the Board

The notice must be in English or any of the 22 languages listed in the Eighth Schedule to the Constitution of India.

RequirementDetail
NatureFree, specific, informed, unconditional, and unambiguous
FormClear affirmative action signifying agreement; no bundled consent for multiple purposes
Scope limitationLimited to the specified purpose; fresh consent required for new purposes
WithdrawalData principal may withdraw consent at any time; withdrawal must be as easy as giving consent
Effect of withdrawalData fiduciary must cease processing (and cause processors to cease) within a reasonable period; does not affect lawfulness of prior processing
Deemed consent for existing dataSection 6(4): For personal data processed before the Act's commencement, processing may continue if consent would have been required; the data fiduciary must provide notice as soon as reasonably practicable
Legitimate UseSection 7 ClauseScope
Specified purpose for which data was provided voluntarilySection 7(a)Data principal voluntarily provides data for a specified purpose (e.g., applying for a government benefit)
State functionsSection 7(b)Processing by the State or its instrumentalities for subsidies, benefits, services, licences, permits
Legal obligationSection 7(c)Processing under any law for compliance with any judgement or order
Medical emergencySection 7(d)Responding to a medical emergency involving a threat to life or health
Epidemic/disaster responseSection 7(e)Processing during an epidemic, outbreak, or threat to public health; disaster or public order breakdown
Employment purposesSection 7(f)Processing by employer for employment purposes (prevention of espionage, maintaining confidentiality, recruitment, attendance verification, assessment)
Public interestSection 7(g)Processing for purposes as may be prescribed by the Central Government
Registration Requirements

A Consent Manager must be registered with the Data Protection Board and must:

  • Be accountable to the data principal
  • Act as a single point of contact to enable the data principal to give, manage, review, and withdraw consent
  • Interoperable, accessible, and transparent
ObligationDetail
RegistrationMust register with the Board; registration valid for 3 years (renewable)
Capital requirementMinimum net worth of INR 2 crore (approximately USD 240,000)
InteroperabilityMust be interoperable with other consent managers and data fiduciaries
Data principal interfaceUser-friendly dashboard showing all active consents, purposes, and withdrawal options
Record-keepingMaintain auditable records of all consent transactions for 7 years
IndependenceMust not have any conflict of interest with data fiduciaries it serves
ElementDetail
Registered consent managers engagedDigiConsent India Pvt Ltd (Reg. No. CM-2025-001)
Integration methodAPI integration with Zenith's customer portal and employee HRMS
Data principal dashboardAccessible at zenithglobal.in/privacy-dashboard in English and Hindi
Consent transaction volumeApproximately 50,000 consent records per month

Significant Data Fiduciary (Section 10)

Designation Criteria

The Central Government may designate a data fiduciary as a Significant Data Fiduciary (SDF) based on:

  • Volume and sensitivity of personal data processed
  • Risk to the rights of data principals
  • Potential impact on the sovereignty and integrity of India
  • Risk to electoral democracy
  • Security of the State
  • Public order
Additional SDF Obligations (Section 10)
ObligationDetail
Data Protection Officer (DPO)Appoint a DPO based in India who represents the SDF and is the point of contact for the data principal and Board (Section 10(2)(a))
Independent data auditorAppoint an independent data auditor to evaluate compliance; audit report submitted to the Board (Section 10(2)(b))
Data Protection Impact Assessment (DPIA)Conduct periodic DPIAs as prescribed (Section 10(2)(c))
Periodic auditsRegular compliance audits by the independent auditor
Algorithmic transparencyIf using algorithmic processing likely to affect data principals, ensure fairness and transparency
Zenith Global Enterprises SDF Assessment
CriterionAssessmentDesignation Risk
Volume of personal data500,000+ data principals in IndiaMedium-High
Sensitivity of dataFinancial data, identity documents for customsMedium
Impact on data principalsModerate (business logistics, not consumer profiling)Medium
Sovereignty/security riskLow (commercial logistics, no government data processing)Low
Overall SDF likelihoodMedium — monitoring Central Government notifications—
Show full SKILL.md (800 more words)Show less

Data Principal Rights (Sections 11-14)

RightSectionDetailImplementation
Right to access information about processingSection 11(1)(a)Summary of personal data processed and processing activitiesPrivacy portal in English and Hindi
Right to access identities of data fiduciaries and processorsSection 11(1)(b)Identity of all data fiduciaries and processors who have been shared dataData sharing register accessible to data principals
Right to correction and erasureSection 12Right to correction of inaccurate or misleading data; right to erasure of data no longer necessary for the purposeSelf-service correction in portal; erasure request workflow
Right to grievance redressalSection 13Right to nominate a person to exercise rights in case of death or incapacity; right to have grievances addressed within prescribed periodGrievance officer designated; 30-day response target
Right to nominateSection 14Right to nominate another person to exercise rights in case of death or incapacityNomination form available in privacy portal
Data Principal Duties (Section 15)

The DPDP Act uniquely imposes duties on data principals:

  • Not to register a false or frivolous complaint with the Board
  • Not to furnish false or misleading information when exercising rights
  • Not to suppress material information when exercising rights
  • Not to impersonate another person while interacting with data fiduciary

Breach of data principal duties can result in a penalty of up to INR 10,000.

Children's Data Protection (Section 9)

RequirementDetail
Age of consent18 years (no differentiation; all individuals under 18 are children)
Verifiable parental consentConsent of parent or lawful guardian required before processing child's data
Prohibition on harmful processingNo tracking, behavioural monitoring, or targeted advertising directed at children
Prohibition on detrimental processingNo processing likely to cause detrimental effect on the well-being of a child
ExemptionsCentral Government may exempt certain data fiduciaries or classes of data fiduciaries from some child protection requirements (e.g., for educational or health purposes)

Cross-Border Data Transfer (Section 16)

Transfer Framework

The Central Government may, by notification, restrict the transfer of personal data to countries or territories specified in the notification (blacklist approach). Transfer is permitted to all destinations not appearing on the restricted list.

ElementDetail
Default positionTransfer permitted unless the destination is specifically restricted by Central Government notification
Restricted destinationsTo be notified by the Central Government (none notified as of March 2026)
Sector-specific restrictionsCertain sectoral regulations (e.g., RBI data localisation circular for payment data) continue to apply
Contractual safeguardsWhile not legally mandated under DPDP Act, contractual safeguards recommended as best practice
Zenith Global Enterprises Transfer Register
Transfer FlowDestinationSectoral RestrictionStatus
Customer data → EU HQGermanyNoneActive
Employee data → Regional HRSingaporeNoneActive
Payment data → Global TreasuryUnited KingdomRBI localisation applies to payment system data (stored in India, processed copy abroad)Active with localisation
Logistics data → APAC operationsJapanNoneActive

Enforcement Framework

Data Protection Board of India (Section 18)
FunctionDetail
Adjudicatory bodyDetermines whether data fiduciaries have breached the Act
Complaint handlingReceives complaints from data principals; investigates and adjudicates
Penalty impositionImposes financial penalties per the Schedule to the Act
AppealsAppeals from Board decisions lie to the Telecom Disputes Settlement and Appellate Tribunal (TDSAT)
Penalty Schedule
ViolationMaximum Penalty (INR)Maximum Penalty (USD approx.)
Failure to take reasonable security safeguards (leading to breach)INR 250 crore (2.5 billion)USD 30 million
Failure to notify the Board and data principals of a breachINR 200 crore (2 billion)USD 24 million
Non-fulfilment of obligations related to childrenINR 200 crore (2 billion)USD 24 million
Non-fulfilment of additional SDF obligationsINR 150 crore (1.5 billion)USD 18 million
Other breaches by data fiduciary or processorINR 50 crore (500 million)USD 6 million
Breach of data principal dutiesINR 10,000USD 120
Breach Notification (Section 8(6))
ElementRequirement
ObligationData fiduciary must notify the Board and each affected data principal of a personal data breach
ContentForm and manner as may be prescribed by the Board
TimelineAs prescribed in the rules (expected to be within 72 hours based on draft rules)
ScopeBreaches that are likely to cause harm to the data principal

Compliance Programme

ComponentDetail
Grievance Officer (India)Rajesh Sharma, Head of Compliance — Mumbai office
Privacy noticePublished at zenithglobal.in/privacy in English and Hindi
Consent manager integrationDigiConsent India API integration for customer consent management
Employee processingSection 7(f) legitimate use for employment purposes; consent for non-employment processing
Security safeguardsReasonable security safeguards per Section 8(4): encryption, access control, incident response
Breach notificationProcedure for notification to Board and data principals per Section 8(6)
Data processor contractsWritten contracts with all processors per Section 8(2): process only per instructions, implement safeguards
Retention limitationData deleted upon purpose fulfilment or consent withdrawal, unless retention required by law (Section 8(7))
Annual trainingDPDP Act compliance training for all India employees

© mukul975, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (scripts, references, assets) in skills/privacy/india-dpdp-act of mukul975/Privacy-Data-Protection-Skills.

  • SKILL.md
  • assets/template.md
  • references/standards.md
  • references/workflows.md
  • scripts/process.py

Open the folder on GitHubat commit 9b2ef9e

Compare with similar skills

India Dpdp Act next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

India Dpdp Act compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
India Dpdp Act this skillmukul975/Privacy-Data-Protection-Skills301—~3.8kAutomated safety check: PassApache-2.0
C15tc15t/c15t1.9k1 repos~1.6kAutomated safety check: PassApache-2.0
HIPAA Safe Harbor Coverage Auditmaziyarpanahi/openmed5.5k—~1.7kAutomated safety check: PassApache-2.0
Korean Privacy Termskimlawtech/korean-privacy-terms587—~2.9kAutomated safety check: PassApache-2.0
Gdpr ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance9461 repos~3.9kAutomated safety check: PassMIT
Hipaa ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance9461 repos~2.3kAutomated safety check: PassMIT

Similar skills

  • C15t

    c15t/c15t

    Work with c15t consent management docs, APIs, and integrations for Next.js, React, and JavaScript.

    1.9k GitHub starsUsed in 1 repo~1.6k tokens
    Legal & ComplianceAuto-check passed
  • Checks OpenMed de-identified clinical text against the 18 HIPAA Safe Harbor identifier categories and reports gaps and residual re-identification risk.

    5.5k GitHub stars~1.7k tokensUpdated yesterday
    Legal & ComplianceAuto-check passed
  • Korean Privacy Terms

    kimlawtech/korean-privacy-terms

    처리방침·이용약관 자동 생성 스킬 패키지 (v4.0). An agent skill from kimlawtech/korean-privacy-terms.

    587 GitHub stars~2.9k tokensUpdated 1 mo ago
    Legal & ComplianceAuto-check passed
  • Gdpr Compliance

    Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

    Expert GDPR compliance assistant covering all four core workflows: (1) auditing code and systems for GDPR violations, (2) drafting GDPR-compliant documents such as privacy policies, Data Processing…

    946 GitHub starsUsed in 1 repo~3.9k tokens
    Legal & ComplianceAuto-check passed
  • Hipaa Compliance

    Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

    Expert HIPAA compliance assistant for healthcare and software contexts.

    946 GitHub starsUsed in 1 repo~2.3k tokens
    Legal & ComplianceAuto-check passed
  • Pii Contract Analyze

    gregmos/PII-Shield

    Universal legal document processor with PII anonymization. An agent skill from gregmos/PII-Shield.

    150 GitHub stars~8.9k tokensUpdated 3 mo ago
    Legal & ComplianceAuto-check: notes

More from mukul975/Privacy-Data-Protection-Skills

All 280 skills in this repo
  • Age Gating Services

    mukul975/Privacy-Data-Protection-Skills

    Implements age-gating mechanisms for online services to restrict access based on user age.

    301 GitHub stars~3.7k tokensUpdated 6 mo ago
    Auto-check passed
  • AI Data Retention

    mukul975/Privacy-Data-Protection-Skills

    Manages AI model retention and machine unlearning requirements.

    301 GitHub stars~1.9k tokensUpdated 6 mo ago
    Auto-check passed
  • AI Dpia

    mukul975/Privacy-Data-Protection-Skills

    Conducts Data Protection Impact Assessments for AI and ML systems per EDPB Guidelines 04/2025 on AI processing.

    301 GitHub stars~3.4k tokensUpdated 6 mo ago
    Auto-check passed
  • Dpia Mitigation Plan

    mukul975/Privacy-Data-Protection-Skills

    Structures risk mitigation planning and residual risk tracking for Data Protection Impact Assessments under GDPR Article 35(7)(d).

    301 GitHub stars~846 tokensUpdated 6 mo ago
    Auto-check passed
  • Gdpr Accountability

    mukul975/Privacy-Data-Protection-Skills

    Guides implementation of the GDPR accountability principle under Articles 5(2) and 24, including documentation requirements for policies, DPIAs, RoPA, training records, and breach logs.

    301 GitHub stars~1.9k tokensUpdated 6 mo ago
    Auto-check passed
  • Pia Threshold Screening

    mukul975/Privacy-Data-Protection-Skills

    Conducts pre-DPIA threshold screening to determine whether a full Data Protection Impact Assessment is required under GDPR Article 35.

    301 GitHub stars~880 tokensUpdated 6 mo ago
    Auto-check passed

Questions about India Dpdp Act

What does India Dpdp Act do?

Guides compliance with India's Digital Personal Data Protection Act 2023. India Dpdp Act is an agent skill from mukul975/Privacy-Data-Protection-Skills. Guides compliance with India's Digital Personal Data Protection Act 2023.

When should I use India Dpdp Act?

India Dpdp Act fits situations like: tasks that involve Privacy and GDPR.

How do I install India Dpdp Act in Claude Code?

Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill india-dpdp-act -a claude-code`. Or copy the skill folder (skills/privacy/india-dpdp-act in mukul975/Privacy-Data-Protection-Skills) into .claude/skills/india-dpdp-act in your project. Claude Code loads it when a task matches its description.

How do I install India Dpdp Act in Codex?

Run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill india-dpdp-act -a codex`. Or copy the skill folder (skills/privacy/india-dpdp-act in mukul975/Privacy-Data-Protection-Skills) into .agents/skills/india-dpdp-act in your project. Codex loads it when a task matches its description.

Can I use India Dpdp Act in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add mukul975/Privacy-Data-Protection-Skills --skill india-dpdp-act -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/india-dpdp-act, .gemini/skills/india-dpdp-act, .github/skills/india-dpdp-act and .opencode/skills/india-dpdp-act in your project.

What does India Dpdp Act need to run?

Going by SKILL.md and its folder, India Dpdp Act needs Python for the scripts in its folder. Our summary lists: Python 3.

Does India Dpdp Act access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is India Dpdp Act safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does India Dpdp Act use?

India Dpdp Act is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does India Dpdp Act use?

About 3.8k tokens (SKILL.md is roughly 15k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 3.3k tokens, read only when the agent opens those files.

What are the alternatives to India Dpdp Act?

Skills that share tags, products or a category with India Dpdp Act: C15t (c15t/c15t, 1.9k stars), HIPAA Safe Harbor Coverage Audit (maziyarpanahi/openmed, 5.5k stars), Korean Privacy Terms (kimlawtech/korean-privacy-terms, 587 stars) and Gdpr Compliance (Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, 946 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains India Dpdp Act?

mukul975 (a GitHub user) maintains it in mukul975/Privacy-Data-Protection-Skills, which has 301 GitHub stars. The repository holds 280 skills in this directory. The repository was last updated on March 16, 2026.

Source: mukul975/Privacy-Data-Protection-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.