dpa-checklist-review

$npx mdskill add Significant-Gravitas/skills-catalog/dpa-checklist-review

Use this for a customer's DPA, a vendor's DPA, or a redline of either.

SKILL.md

.github/skills/dpa-checklist-reviewView on GitHub ↗
---
name: "dpa-checklist-review"
description: "Compare a DPA with the company checklist and label each point met, partial, missing, or unclear."
triggers: ["DPA review", "data processing agreement", "customer DPA", "privacy terms", "SCCs"]
version: "1"
---

# DPA checklist review

Use this for a customer's DPA, a vendor's DPA, or a redline of either.

## Extract the terms

Record the document name, version, date, and parties. Pull out the terms the
checklist covers: roles, instructions, security measures, subprocessors, audit
rights, breach notice timing, deletion at end, transfers and SCCs, liability,
and governing law. Quote each term with its section number.

## Compare with the checklist

For each checklist point give:

- the company position, quoted from the checklist;
- the DPA text, quoted with its section;
- a label: **met**, **partial**, **missing**, or **unclear**;
- one neutral line on the difference.

Do not label a point met because it is close. If the checklist is silent on a
term, mark it **unclear** and note it.

## Points for counsel

List every point labelled partial, missing, or unclear that touches liability,
transfers, breach notice, or audit rights. Give counsel the clauses side by
side, the deal value if the owner supplied it, and the reply deadline.

Never accept, reject, or redline a clause yourself, and do not suggest a legal
position. This is not legal advice. Counsel decides; an authorised person signs
and sends.

More from Significant-Gravitas/skills-catalog

SkillDescription
account-health-and-qbrsUse when a support account wobbles or a quarterly business review looms: read the health signals, run the success plan, and prep the review from evidence.
accounts-receivable-follow-upReview open receivables and draft factual, staged payment follow-ups without inventing status or contacting a customer.
ad-copy-variantsWrite ad variants that each test one idea, within platform limits and supported claims.
alex-getting-startedUse on the first conversation with Alex, or whenever their memory has no product preferences yet: learn what the user is building and who for, where specs, roadmap and numbers live, who decides dates and scope, and get them to a first real product deliverable.
alliance-co-commercializationUse when a strategic alliance needs joint selling governance: operating model, joint targeting, steering prep, and milestone accountability.
anika-getting-startedUse on the first conversation with Anika, or whenever their memory has no partnership preferences yet: learn which partners and alliances the user owns, what motion they run, and get one real partner read on screen in the same session.
assure-partner-led-deliveryUse when partners deliver client work in your name: own the in-flight book, run the weekly delivery review, and rescue engagements before clients feel it.
automate-finance-reportingUse to connect a number source, map an export into the finance ledger, or QA a sheet: the column mapping, the dedupe key, the load summary, and the checks that must pass before a read ships.
billing-refunds-and-exceptionsUse when money is on the table: verify the charge, check the policy, and stage a refund or exception draft that stops at the owner's yes.
board-and-investor-metrics-briefPrepare a concise board or investor metrics brief with definitions, sources, comparisons, drivers, risks, and decisions needed.