All categories
Business & Operations
Operations, strategy, finance, sales, support, management, and planning
- 29,809
- 1,243
Security grades appear on each card once the skill has been scanned. Newly imported skills may briefly show without a grade until the backfill job runs.
Open in full browserBrowse business & operations skills
Showing 9,625–9,648 of 29,809 skills
- Analyze Counterparty Markup Of Stock Purchase AgreementPurchase agreement markup analysis should detect economically important changes hidden in definitions, schedules, and exhibits; assess the impact of preference, conversion, redemption, and control mechanics across scenarios; and cross-check representation changes against diligence materials rather than only listing revised provisions.Votes: 0GitHub stars: 57
- Analyze Counterparty Markup Of Investors Rights AgreementIRA markup analysis requires evaluating the cumulative effect of changes to registration rights, information rights, pay-to-play provisions, and consistency with the agreed term sheet — not treating revisions as isolated issues.Votes: 0GitHub stars: 57
- Triage Service Provider Contracts For Cpra Compliance GapsCPRA service-provider contract triage requires first classifying each counterparty by its correct legal relationship before assessing contractual adequacy, and using any existing internal gap analysis and enforcement materials as framing inputs that set triage priorities.Votes: 0GitHub stars: 57
- Review Counterparty Data Processing AgreementCounterparty DPA issue identification memos fail when the agent does not use the internal data protection playbook as the primary benchmark and does not reconcile the executed MSA's scope and liability provisions against the DPA's terms before producing an issue-focused memorandum.Votes: 0GitHub stars: 57
- Research Data Localization Requirements For Planned Market ExpansionData localisation memos for multi-country market expansions fail when the agent applies generic cross-border transfer analysis without addressing each target jurisdiction's specific localisation or residency requirements and without assessing whether the current cloud and infrastructure architecture can be adapted to satisfy those requirements.Votes: 0GitHub stars: 57
- Map Regulatory Notification Deadlines For MultiMulti-jurisdiction breach notification deadline matrices fail when the agent does not use the jurisdiction map as the authoritative source for identifying which jurisdictions have affected individuals and does not separate overdue notifications from pending notifications.Votes: 0GitHub stars: 57
- Map Gdpr Data Subject Rights Requirements To Existing Internal ControlsData subject rights gap analyses are strongest when the agent maps the applicable rights framework against operational evidence showing how requests are actually handled in practice, rather than relying only on written policies or procedures.Votes: 0GitHub stars: 57
- Identify Privacy And Data Protection Issues In Counterparty Transfer AgreementData transfer agreement issue memoranda should be framed by the relevant supervisory communications and guidance, and should reconcile transfer-mechanism status, anonymisation analysis, and the actual data inventory against the agreement’s provisions.Votes: 0GitHub stars: 57
- Identify Issues In Transfer Impact AssessmentTIA issue memos for cross-border EU data transfers fail when the agent does not assess the TIA's methodology and conclusions against the destination-country legal analysis required by Schrems II, and does not identify where multiple transfer mechanisms in the same engagement have been incorrectly applied or are inconsistent.Votes: 0GitHub stars: 57
- Identify Issues In State Attorney General Data Breach InquiryAG data breach CID issue memos fail when the agent identifies compliance gaps in the abstract rather than connecting each gap to the specific requests in the CID and the evidence (or absence of evidence) in the company’s own documents.Votes: 0GitHub stars: 57
- Identify Issues In Incident Response PlanIncident response plan issue memos for healthcare organisations fail when the agent does not cross-reference the incident response plan against supporting materials such as audit findings, insurance terms, vendor agreements, and compliance memoranda to identify structural gaps between the plan's written requirements and the organisation's actual capabilities.Votes: 0GitHub stars: 57
- Extract Privacy Compliance Obligations From MultiMulti-jurisdictional compliance obligation matrices for health-tech platforms fail when the agent does not assess each statute's applicability to the company's current and planned data architecture and does not use prior incidents as evidence of existing compliance gaps.Votes: 0GitHub stars: 57
- Extract MultiMulti-state privacy obligation extraction memos fail when the agent does not apply each statute's applicability threshold to the company's actual profile before extracting obligations and does not differentiate between obligations that are unique to one state and those that are shared across states.Votes: 0GitHub stars: 57
- Extract Key Compliance Obligations From New State Data Privacy RegulationsState privacy regulation obligation extraction fails when the agent does not apply each statute's applicability thresholds to the company's actual data profile and does not map extracted obligations against existing compliance gaps evidenced by the company's own documents.Votes: 0GitHub stars: 57
- Extract Document Requests From Regulatory Inquiry LetterRegulatory response tracker construction benefits from reconciling requests across multiple regulatory inquiries into a unified tracker that accounts for overlapping requests, privilege implications, and preservation scope for each request.Votes: 0GitHub stars: 57
- Extract Data Flow Details From Processing RecordsData flow extraction from processing records fails when the agent does not systematically reconcile the primary record of processing against supporting agreements, transfer assessments, and technical architecture to surface discrepancies between the documented and actual data flows.Votes: 0GitHub stars: 57
- Draft Updated Privacy PolicyPrivacy policy updates for AI-powered health tools fail when the agent does not ground new disclosures in the product description and the privacy impact assessment, and does not separately memo the legal risks arising from the new product's data uses.Votes: 0GitHub stars: 57
- Draft Response To Regulatory Inquiry LetterRegulatory inquiry responses involving health data sharing should be drafted by mapping each inquiry item to a corresponding response, preserving the distinction between the external response and any privileged internal analysis, and checking that representations align with the underlying factual record.Votes: 0GitHub stars: 57
- Draft Markup Of Data Processing AgreementDPA markups with commentary memos fail when the analysis does not distinguish mandatory legal requirements from policy-driven positions and commercial preferences, and when the commentary does not connect security-history concerns to the relevant privacy and security provisions.Votes: 0GitHub stars: 57
- Draft Markup Of CrossCross-border data transfer agreement markups for clinical trial data fail when the agent applies generic negotiation positions rather than integrating the organisation's playbook, the applicable commercial agreement context, the due-diligence summary, and the internal email escalation positions into a coherent redline.Votes: 0GitHub stars: 57
- Draft External Privacy NoticeExternal privacy notice drafts for digital health platforms fail when the agent does not anchor the notice's disclosures in the current data processing inventory and does not address additional jurisdiction-specific expansion and AI product integration obligations as distinct disclosure workstreams.Votes: 0GitHub stars: 57
- Draft Data Breach Remediation Plan MemorandumBoard-level breach remediation memos fail when the agent does not integrate the forensic investigation findings, prior risk assessment gaps, and applicable regulatory obligations into a sequenced remediation plan with specific owners, timelines, and evidence of completion.Votes: 0GitHub stars: 57
- Draft Cybersecurity Incident Response PolicyIncident response policies for regulated manufacturers fail when the agent drafts a generic template rather than integrating the organisation-specific gap analysis findings, governance mandate, operational runbook, and regulatory guidance into a facility- and product-context-specific policy.Votes: 0GitHub stars: 57
- Draft Affected Individual Notification LetterHealthcare breach notification letters fail when the agent does not anchor factual representations to the forensic investigation findings and does not flag inconsistencies between the notification template, incident memo, and compliance matrix in an accompanying cover memo.Votes: 0GitHub stars: 57