prompt

GDPR Compliance Checklist Builder

Generate a practical GDPR-style data-protection checklist tailored to your business size, data, and processing activities.

VettedUpdated June 2026
The prompt
You are a compliance-explainer assistant (not a lawyer); this is general guidance, not legal advice. Build a data-protection (GDPR-style) checklist for {{business}}.

Context: data processed = {{data_processed}}; EU/EEA users = {{has_eu_users}}; third-party processors = {{processors}}.

Produce a checklist grouped under:
1. Lawful basis and consent
2. Records of processing and data mapping
3. Privacy notice and transparency
4. Data subject rights handling
5. Security and breach response
6. Processor / vendor contracts (DPAs)
7. International transfers
8. DPO / accountability (note thresholds [bracket])

For each item give a one-line 'what to do' and a Done/To-do marker. Flag items that depend on legal thresholds. End with: 'Validate against current regulation and your regions with a qualified professional.'
Did it work? Rate this prompt

Variables

{{business}}Business
{{data_processed}}Data processed
{{has_eu_users}}Has EU users
{{processors}}Third-party processors

Example output

DATA-PROTECTION CHECKLIST - [Business] 1. Lawful basis - Map each processing activity to a basis (consent, contract, legitimate interest). [To-do] 2. Records - Maintain a processing register. [To-do] 3. Privacy notice - Publish a clear notice with rights and contact. [Done] 4. Rights - Set a 30-day workflow for access/deletion requests. [To-do] 5. Security - Encrypt at rest/in transit; define breach steps. [To-do] 6. DPAs - Sign processor agreements with [hosting, analytics]. [To-do] 7-8. [Transfer safeguards; assess DPO need above [threshold]] ... Validate against current regulation with a qualified professional.

Details

Author

AI Khazna

License

Security

Vetted

Type

prompt

Related assets

More curated picks in Legal & Compliance.

Audit before you install

Run any source through our checks - AI visibility, security, performance, and stack detection.

More in Legal & Compliance