The method
Paste the prompt into your LLM. Replace bracketed info with your specific context. Use this prompt when handling sensitive data or creating content that needs to comply with data privacy regulations like GDPR or CCPA. Tweak for local laws.
The prompts
Prompt 1
Analyze the following text for potential violations of [Data Privacy Regulation, e.g., GDPR, CCPA]: [Insert Text Here]. Identify all instances of Personally Identifiable Information (PII) and suggest methods for anonymization or pseudonymization in accordance with [Regulation]. Provide specific recommendations to ensure the text adheres to the principles of data minimization and purpose limitation, including how to obtain explicit consent where necessary. Furthermore, assess the risk of re-identification and propose safeguards to mitigate these risks. Consider the context of [Specific Use Case] and tailor your advice accordingly. Your analysis should cover aspects such as data storage, data transfer, and data security measures. Finally, provide a summary of the key privacy concerns and actionable steps to address them, prioritizing those that pose the greatest risk of non-compliance and reputational damage.
Prompt 2
I need to draft a data privacy policy for [Company Name] operating in [Country/Region]. The policy should address the following: [List of key considerations, e.g., types of data collected, purpose of data collection, data sharing practices, user rights]. Ensure the policy is compliant with [Data Privacy Regulation, e.g., GDPR, CCPA]. The target audience for this policy is [Target Audience, e.g., website visitors, app users, employees]. Please structure the policy with clear headings and subheadings, using plain language that is easily understandable. Include sections on data security measures, data retention policies, and procedures for handling data breaches. Provide a mechanism for users to exercise their rights, such as the right to access, rectify, or erase their personal data. Consider the specific activities of [Company Name] and tailor the policy accordingly. Also, highlight any unique aspects of data processing that require special attention under the relevant regulations. Finally, add a clause about policy updates and how users will be notified of changes.