HIPAA Pre-Deployment Compliance Check
maziyarpanahi/openmed
Walks a data pipeline against the HIPAA Privacy and Security Rule checklist and produces a gap report before it processes patient data.
广告合规审核技能,用于审核广告素材是否符合中国广告法及相关法规。适用场景:(1) 用户提交广告文案、广告素材要求合规审核时;(2) 用户提到"广告审核""广告合规""广告法审查"等关键词时;(3) 用户要求检查广告内容是否存在违法违规风险时;(4) 用户提交房地产、食品、医疗、药品、互联网等行业广告要求专项审核时。审核依据涵盖《广告法》《反不正当竞争法》及行业专项法规。
$ npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install zh-xx/legal-assistant-skills ad-compliance-review --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/zh-xx/legal-assistant-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/ad-compliance-review .claude/skills/ad-compliance-review && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "ad-compliance-review" agent skill from https://github.com/zh-xx/legal-assistant-skills/tree/main/ad-compliance-review into .claude/skills/ad-compliance-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ad-compliance-review", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/zh-xx/legal-assistant-skills/tree/main/ad-compliance-reviewType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install zh-xx/legal-assistant-skills ad-compliance-review --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zh-xx/legal-assistant-skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/ad-compliance-review .agents/skills/ad-compliance-review && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "ad-compliance-review" agent skill from https://github.com/zh-xx/legal-assistant-skills/tree/main/ad-compliance-review into .agents/skills/ad-compliance-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ad-compliance-review", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install zh-xx/legal-assistant-skills ad-compliance-review --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zh-xx/legal-assistant-skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/ad-compliance-review .cursor/skills/ad-compliance-review && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "ad-compliance-review" agent skill from https://github.com/zh-xx/legal-assistant-skills/tree/main/ad-compliance-review into .cursor/skills/ad-compliance-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ad-compliance-review", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/zh-xx/legal-assistant-skills.git --path ad-compliance-review--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install zh-xx/legal-assistant-skills ad-compliance-review --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zh-xx/legal-assistant-skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/ad-compliance-review .gemini/skills/ad-compliance-review && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "ad-compliance-review" agent skill from https://github.com/zh-xx/legal-assistant-skills/tree/main/ad-compliance-review into .gemini/skills/ad-compliance-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ad-compliance-review", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install zh-xx/legal-assistant-skills ad-compliance-reviewInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/zh-xx/legal-assistant-skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/ad-compliance-review .github/skills/ad-compliance-review && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "ad-compliance-review" agent skill from https://github.com/zh-xx/legal-assistant-skills/tree/main/ad-compliance-review into .github/skills/ad-compliance-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ad-compliance-review", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install zh-xx/legal-assistant-skills ad-compliance-review --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zh-xx/legal-assistant-skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/ad-compliance-review .opencode/skills/ad-compliance-review && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "ad-compliance-review" agent skill from https://github.com/zh-xx/legal-assistant-skills/tree/main/ad-compliance-review into .opencode/skills/ad-compliance-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ad-compliance-review", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
ad-compliance-review广告合规审核技能,用于审核广告素材是否符合中国广告法及相关法规。适用场景:(1) 用户提交广告文案、广告素材要求合规审核时;(2) 用户提到"广告审核""广告合规""广告法审查"等关键词时;(3) 用户要求检查广告内容是否存在违法违规风险时;(4) 用户提交房地产、食品、医疗、药品、互联网等行业广告要求专项审核时。审核依据涵盖《广告法》《反不正当竞争法》及行业专项法规。
Ad Compliance Review is an agent skill from zh-xx/legal-assistant-skills. 广告合规审核技能,用于审核广告素材是否符合中国广告法及相关法规。适用场景:(1) 用户提交广告文案、广告素材要求合规审核时;(2) 用户提到"广告审核""广告合规""广告法审查"等关键词时;(3) 用户要求检查广告内容是否存在违法违规风险时;(4) 用户提交房地产、食品、医疗、药品、互联网等行业广告要求专项审核时。审核依据涵盖《广告法》《反不正当竞争法》及行业专项法规。
Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 24 other files, including scripts and reference files (for example `references/00-广告定性.md`, `references/01-广告形式合规.md` and `references/02-政治与公共价值.md`).
It sits in Legal & Compliance, covering Regulatory compliance. The repository describes itself as: AI assistant skills for legal work. Compatible with Claude Code, Codex, and other platforms. The licence is Apache-2.0.
4 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 3094afd. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 1 file in scripts/, which the agent can run.
Shell commands in SKILL.md call:
nodeFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Ad Compliance Review loads about 1.2k tokens when it runs, and up to ~8.6k if it reads all its reference files. Until then it costs about 52 tokens; SKILL.md has 180 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from zh-xx/legal-assistant-skills at commit 3094afd, republished under its Apache-2.0 licence (© zh-xx). 180 words, ~1,155 tokens.
.claude/skills/ad-compliance-review/SKILL.md (or your agent's skills folder). This skill also uses 23 other files; get the full folder from GitHub.对广告素材进行四阶段流水线审核:定性分类 → 通用红线 → 行业专项 → 生成报告。
输入广告素材
│
▼
[阶段一] 广告定性与分类
│ 判断是否构成广告 → 识别行业 → 识别形式
│
▼
[阶段二] 通用红线审核
│ 政治红线(一票否决) → 虚假误导 → 绝对化用语
│ → 形式合规 → 格式条款 → 不正当竞争
│
▼
[阶段三] 行业专项审核(按分类加载)
│ 仅加载与该广告相关的行业规则
│
▼
[阶段四] 生成审核报告读取 references/00-广告定性.md 中的判定规则。
执行步骤:
判断是否构成广告:
识别行业类别(可多选):
房地产 食品 酒类 保健食品 特殊医学用途配方食品 婴幼儿配方食品医疗 药品 医疗器械 农药 兽药教育培训 投资招商互联网广告 网络直播公益广告一般商品/服务(不属于以上任何特殊类别)识别广告形式(可多选):
信息流 软文/测评/体验 弹窗/开屏 竞价排名 直播带货户外广告 传统媒体 自媒体/公众号识别是否涉及:
代言/推荐 促销/有奖销售 商标/专利宣传输出: 定性结论 + 行业标签列表 + 形式标签列表 + 附加标签列表
按以下顺序依次审核,读取对应 references 文件:
任一项命中即判定 不予通过,标记为"高风险-一票否决",无需继续后续审核。
重点关注:虚构数据/销量/评价、引证无出处、承诺无法兑现。
发现疑似绝对化用语时,先检查是否满足例外条件再判定。医疗/投资/教育领域从严。
重点关注:是否标注"广告"、是否以新闻/科普形式变相发布。
读取 references/05-格式条款与消费者权益.md。
重点关注:"最终解释权"、免除经营者责任、限制消费者权利。
重点关注:混淆行为、虚假宣传、贬低竞品、损害商誉。
根据阶段一识别的行业标签,仅加载对应的 references 文件进行专项审核。不属于特殊行业的广告跳过此阶段。
| 行业标签 | 加载文件 |
|---|---|
| 房地产 | references/07-房地产广告.md |
| 食品/酒类/保健食品/特医食品/婴配食品 | references/08-食品广告.md |
| 医疗 | references/09-医疗广告.md |
| 药品 | references/10-药品广告.md |
| 医疗器械 | references/11-医疗器械广告.md |
| 农药 | references/12-农药广告.md |
| 兽药 | references/13-兽药广告.md |
| 促销/有奖销售 | references/14-促销有奖销售.md |
| 互联网广告/网络直播 | references/15-互联网广告.md |
| 代言/推荐 | references/16-代言与推荐.md |
| 商标/专利 | references/17-商标与专利.md |
| 教育培训/投资招商 | references/18-教育培训与投资招商.md |
| 公益广告 | references/19-公益广告与特殊规定.md |
如涉及行政许可类广告(医疗、药品、医疗器械、保健食品等),额外读取 references/20-广告行为与管理责任.md 核查资质要求。
汇总阶段一至三的审核结果,使用以下模板输出报告:
# 广告合规审核报告
## 一、基本信息
| 项目 | 内容 |
|-----|------|
| 广告素材 | [素材名称/描述] |
| 审核日期 | [日期] |
| 广告定性 | 构成广告 / 非广告 |
| 行业分类 | [行业标签] |
| 广告形式 | [形式标签] |
## 二、审核结论
**总体结论:** [通过] / [需修改后通过] / [不予通过]
**风险等级:** [高/中/低]
## 三、问题清单
> 按风险等级从高到低排列
### [问题编号]. [问题简述]
- **违规类型:** [政治红线/虚假误导/绝对化用语/形式违规/行业专项违规/...]
- **风险等级:** [高/中/低]
- **问题描述:** [具体描述广告中的违规内容]
- **原文摘录:** "[摘录广告原文中的违规表述]"
- **违反条款:** [对应的法规条款或审核规则]
- **修改建议:** [具体的修改方向或替代表述]
(重复以上结构,列出所有问题)
## 四、合规建议
[针对整体广告的改进方向,如有必要]
## 五、免责声明
本审核报告基于所提供的广告素材文本内容进行合规分析,不构成正式法律意见。
如涉及行政审批类广告(医疗、药品、保健食品等),建议另行核查相关行政许可文件。如用户要求生成 Word 文档格式的审核报告,在阶段四完成 Markdown 报告输出后,额外执行以下步骤:
{
"basicInfo": {
"广告素材": "素材描述",
"审核日期": "2026-02-11",
"广告定性": "构成广告",
"行业分类": "一般商品/服务",
"广告形式": "店铺促销告示"
},
"conclusion": "通过 | 需修改后通过 | 不予通过",
"riskLevel": "高 | 中 | 低",
"issues": [
{
"title": "问题简述",
"type": "违规类型",
"risk": "高 | 中 | 低",
"description": "问题描述",
"quote": "原文摘录",
"violation": "违反条款",
"suggestion": "修改建议"
}
],
"suggestions": "合规建议(多段落用 \\n 分隔)",
"disclaimer": "免责声明(可选,有默认值)"
}node scripts/generate_report.js <input.json> [output.docx]生成的 DOCX 格式:仿宋字体、小四正文、1.5 倍行距、页眉页脚、风险等级彩色标注。
SPDX-License-Identifier: Apache-2.0
Copyright (c) 2026 JiCheng
采用 Apache License 2.0 许可,许可证原文见仓库根目录 LICENSE。
© zh-xx, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 23 other files (scripts, references) in ad-compliance-review of zh-xx/legal-assistant-skills.
Open the folder on GitHubat commit 3094afd
Ad Compliance Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Ad Compliance Review this skillzh-xx/legal-assistant-skills | 174 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | |
| HIPAA Pre-Deployment Compliance Checkmaziyarpanahi/openmed | 5.5k | — | ~2k | Automated safety check: Pass | Apache-2.0 | |
| Hipaa ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance | 946 | 1 repos | ~2.3k | Automated safety check: Pass | MIT | |
| ISO Standards Readiness EvidenceK-Dense-AI/scientific-agent-skills | 48k | 1 repos | ~4.6k | Automated safety check: Notes | MIT | |
| Iso42001Sushegaad/Claude-Skills-Governance-Risk-and-Compliance | 946 | 1 repos | ~3.7k | Automated safety check: Pass | MIT | |
| Legal Compliance SearchSerein-81/financial_rag | 148 | — | ~1.6k | Automated safety check: Notes | None |
maziyarpanahi/openmed
Walks a data pipeline against the HIPAA Privacy and Security Rule checklist and produces a gap report before it processes patient data.
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
Expert HIPAA compliance assistant for healthcare and software contexts.
K-Dense-AI/scientific-agent-skills
Organizes scope, controlled documents, risk files and traceability into draft evidence for human review against ISO 13485, 14971, 17025 and 15189.
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
Expert ISO 42001 AI Management System (AIMS) compliance advisor.
Serein-81/financial_rag
Looks up current company registration rules, industry licences and compliance obligations in China through live web search, tailored to the business profile.
SCStelz/security-investigator
A skill your agent uses when asked to investigate Conditional Access policy changes, sign-in failures related to CA policies (error codes 53000, 50074, 530032), or suspected policy…
zh-xx/legal-assistant-skills
法律风险结构化分析与可视化。基于法律分析文本,执行五步风险抽取模型, 生成四层可视化输出(雷达图数据、风险矩阵、影响路径图、决策树)。
zh-xx/legal-assistant-skills
合同生成技能,以资深法律专家身份生成完整合同。适用场景:(1) 用户要求'起草合同''生成合同''拟定协议''写合同''草拟合同'时;(2) 用户提供合同类型和交易信息,要求生成完整合同文本时;(3) 用户要求根据特定立场(甲方/乙方/买方/卖方/出租方/承租方)起草倾斜性合同时;(4) 用户要求将已有合同要点或业务条件生成为正式合同文本时。输出 Markdown 格式,可选导出 .docx。
zh-xx/legal-assistant-skills
Contract review skill that adds comment-based issue annotations without changing original text.
zh-xx/legal-assistant-skills
预包装食品标签合规审核技能,用于审核食品标签是否符合 GB 7718(预包装食品标签通则)和 GB 28050(预包装食品营养标签通则)。适用场景:(1) 用户提交食品标签图片、文字或文档要求合规审核时;(2) 用户提到"食品标签审核""标签合规""营养标签审查""GB 7718""GB 28050"等关键词时;(3) 用户要求检查食品标签是否存在缺项、错误或违规风险时。支持 2011 版和…
zh-xx/legal-assistant-skills
法律AI求职助手 - 帮助法律人(法务/律师)使用AI辅助求职。支持公司/律所调研、法律风险分析、网页简历生成、针对性材料准备、面试备忘录生成。具备MCP工具级降级能力,无MCP时自动使用Web Search。
zh-xx/legal-assistant-skills
将法条/规范文件(.txt/.docx/.pdf)转为 Markdown。适用于用户要求“法条转 markdown”“pdf/docx 转 markdown”。处理 .pdf/.docx 时先检查是否已安装 mineru-ocr skill;未安装先引导安装,安装后优先用 mineru-ocr;仅在用户明确同意时再用本地回退方案。
Categories
广告合规审核技能,用于审核广告素材是否符合中国广告法及相关法规。适用场景:(1) 用户提交广告文案、广告素材要求合规审核时;(2) 用户提到"广告审核""广告合规""广告法审查"等关键词时;(3) 用户要求检查广告内容是否存在违法违规风险时;(4) 用户提交房地产、食品、医疗、药品、互联网等行业广告要求专项审核时。审核依据涵盖《广告法》《反不正当竞争法》及行业专项法规。. Ad Compliance Review is an agent skill from zh-xx/legal-assistant-skills.
Ad Compliance Review fits situations like: tasks that involve Regulatory compliance.
Run `npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a claude-code`. Or copy the skill folder (ad-compliance-review in zh-xx/legal-assistant-skills) into .claude/skills/ad-compliance-review in your project. Claude Code loads it when a task matches its description.
Run `npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a codex`. Or copy the skill folder (ad-compliance-review in zh-xx/legal-assistant-skills) into .agents/skills/ad-compliance-review in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add zh-xx/legal-assistant-skills --skill ad-compliance-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ad-compliance-review, .gemini/skills/ad-compliance-review, .github/skills/ad-compliance-review and .opencode/skills/ad-compliance-review in your project.
Going by SKILL.md and its folder, Ad Compliance Review needs the command-line tools its instructions call (node).
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Ad Compliance Review is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.2k tokens (SKILL.md is roughly 4.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 7.4k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Ad Compliance Review: HIPAA Pre-Deployment Compliance Check (maziyarpanahi/openmed, 5.5k stars), Hipaa Compliance (Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, 946 stars), ISO Standards Readiness Evidence (K-Dense-AI/scientific-agent-skills, 48k stars) and Iso42001 (Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, 946 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
zh-xx (a GitHub user) maintains it in zh-xx/legal-assistant-skills, which has 174 GitHub stars. The repository holds 8 skills in this directory. The repository was last updated on April 18, 2026.
Source: zh-xx/legal-assistant-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.