All skills
lassejlv avatar

/legal-policy-drafter

@f5b9ecd
by Lasselassejlv/skills50 stars
1

Draft, update, or audit legal-policy documents such as TERMS.md, PRIVACY.md, cookie notices, SaaS policies, app-store privacy text, and GDPR-friendly privacy disclosures from repository evidence. Use for legal policy work that requires inspecting product behavior, data flows, billing, auth, analytics, subprocessors, and missing business facts without inventing unsupported claims.

Use this Skill: https://skilld.dev/gh/lassejlv/skills/legal-policy-drafter

This session only. Nothing lands on disk.

referencesoutput-checklist.md

≈511 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Output Checklist

Run this self-check before finalizing TERMS.md, PRIVACY.md, app-store privacy text, cookie notices, or an audit.

Evidence

  • Existing policy/legal docs were read first.
  • Product behavior was inspected from routes/pages/API/backend code.
  • Data model/schema/env/deploy/provider evidence was inspected.
  • Third-party providers affecting privacy or terms were verified against current official sources when possible.
  • A working evidence matrix exists, even if summarized only in notes.

Truthfulness

  • No invented legal entity, owner, address, contact email, governing law, jurisdiction, or effective date.
  • No unsupported claims about GDPR compliance, SOC 2, HIPAA, encryption, uptime, SLAs, refunds, deletion timelines, data residency, or AI training.
  • Missing facts use TODO(confirm):.
  • Existing policy text was preserved only where still accurate.

Privacy Coverage

  • Controller/operator and contact.
  • Scope and covered surfaces.
  • Data categories and sources.
  • Purposes and legal bases where relevant.
  • Cookies/local storage/tracking and consent controls.
  • Processors/subprocessors and provider categories.
  • International transfers and safeguards where known.
  • Retention/deletion/export.
  • User rights and choices.
  • Security, children, AI processing, changes, and contact.

Terms Coverage

  • Service description and eligibility.
  • Accounts and account responsibility.
  • Acceptable use.
  • User content ownership and operating license.
  • Payments, subscriptions, trials, cancellation, taxes, invoices, and refunds if relevant.
  • Third-party services.
  • Availability/support without unsupported promises.
  • IP, feedback, privacy cross-reference, termination, disclaimers, liability, governing law, changes, and contact.

Final Response

  • List created or updated files.
  • Summarize key repo evidence and provider lookups.
  • Call out all TODO(confirm): categories needing owner/legal review.
  • Mention validation performed.
  • Do not present the documents as guaranteed legal compliance.

Source: SKILL.md on GitHub

1 warning13d3 checks · Risk SAFE
  • Gen Agent Trust Hub13d

    The legal-policy-drafter skill is designed to generate evidence-based legal documents by analyzing a repository's codebase and external documentation. It includes robust instructions to prevent fabrication of facts and incorporates manual review steps, making it a safe tool for its intended purpose.

  • Socket13d

    No alerts

  • Snyk13d

    Risk: MEDIUM · 1 issue

Signed by skilld at f5b9ecd. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 5 months ago

README badge

README badge for lassejlv/skills/legal-policy-drafter