Explore

61

Browse the full catalog of community-built skills, connectors, plugins, and worlds.

Technology & Digital
52
11
Jul 26, 2026
H. Naik /

nis2

EU NIS2 Directive (Directive (EU) 2022/2555) compliance advisor for essential and important entities: entity classification, Art. 21 risk management measures, Art. 23 incident reporting timelines (24h/72h/1 month), Art. 20 governance obligations, supply chain security (Art. 21(2)(d); coordinated risk assessments Art. 22), gap assessments, policy drafting, ISO 27001 alignment, and penalty exposure analysis. Also covers Commission Implementing Regulation (EU) 2024/2690, the technical/methodological sub-requirements for Art. 21(2) and the significant-incident thresholds binding on DNS/cloud/data-centre/MSP/MSSP/trust-service and other digital entities. Use for NIS2 readiness, transposition questions, ENISA technical implementation guidance, significant-incident thresholds, supervisory differences between essential and important entities, and cross-border coordination.

Data Protection & Privacy
77
15
Jul 26, 2026
H. Naik /

gdpr-compliance

Expert GDPR compliance assistant covering all four core workflows: (1) auditing code and systems for GDPR violations, (2) drafting GDPR-compliant documents such as privacy policies, Data Processing Agreements (DPAs), and consent notices, (3) answering GDPR compliance questions with authoritative article citations, and (4) reviewing data flows and PII handling practices. Use this skill whenever the user mentions GDPR, data protection, privacy compliance, lawful basis, data subject rights, DPA, privacy notices, consent management, data breaches, DPIAs, controller/ processor relationships, cross-border data transfers, or any EU/UK data privacy topic.

Technology & Digital
49
11
Jul 26, 2026
H. Naik /

eu-cra

Expert EU Cyber Resilience Act (CRA) advisor for Regulation (EU) 2024/2847 — mandatory cybersecurity and vulnerability handling requirements for all products with digital elements (PDEs) sold in the EU. Use this skill for gap analysis, product classification (Default / Class I / Class II), conformity assessment route selection, CE marking, SBOM requirements, vulnerability and incident reporting to ENISA/CSIRTs, support period obligations, and manufacturer/importer/distributor duties. Trigger for EU CRA, Cyber Resilience Act, PDE compliance, Annex I requirements, SBOM EU, CE marking cybersecurity, or connected product security EU.

Technology & Digital
50
11
Jul 26, 2026
H. Naik /

eu-ai-act

EU AI Act (Regulation (EU) 2024/1689) compliance advisor — risk classification across all four tiers, all 9 prohibited practices (Art. 5, including the nudification/CSAM prohibition from Dec 2, 2026), all 8 Annex III high-risk use case areas, provider and deployer obligations (Arts. 9–17, 26), GPAI model obligations including the July 2025 Code of Practice (Arts. 51–55), conformity assessment and CE marking (Arts. 43–48), EU AI database registration, Art. 50 transparency (chatbots, synthetic media, AI-generated content), governance (AI Office, AI Board), penalties (Art. 99), confirmed phase-in timeline (Digital Omnibus adopted June 29, 2026: Annex III deferred to Dec 2, 2027; Annex I to Aug 2, 2028), and cross-framework mapping to ISO 42001, NIST AI RMF, and GDPR. Use for any EU AI regulation, AI system classification, or AI compliance question. Current as of July 2026. GPAI enforcement powers activate August 2, 2026.

Banking & Finance
35
4
Jul 26, 2026
H. Naik /

dora

Expert DORA (Regulation (EU) 2022/2554 — Digital Operational Resilience Act) compliance advisor for EU financial entities. Use this skill whenever a user asks about DORA compliance, ICT risk management frameworks, ICT incident classification or reporting, threat-led penetration testing (TLPT), ICT third-party risk management, Register of Information, contractual provisions with ICT providers, ICT concentration risk, oversight of critical ICT third-party service providers (CTPPs), or any DORA RTS/ITS obligation.

Environmental & Energy
14
2
Jul 26, 2026
H. Naik /

csrd

Expert CSRD (Corporate Sustainability Reporting Directive, EU 2022/2464) compliance advisor. Use this skill whenever a user asks about CSRD, European Sustainability Reporting Standards (ESRS), double materiality assessment, sustainability reporting obligations, ESG disclosure, CSRD scope and thresholds, value chain reporting, XBRL digital tagging, third-party assurance, CSRD gap assessments, CSRD implementation timelines, ESRS E1–E5 environmental standards, ESRS S1–S4 social standards, ESRS G1 governance, CSRD vs GRI/TCFD/SASB alignment, or any EU corporate sustainability reporting question.

Compliance & Regulatory
43
10
Jul 22, 2026
A. AI /

regulatory-threat-model

Runs a server-enforced STRIDE threat model and LINDDUN privacy threat model over a system described in prose, screens named dependencies against live CVE/KEV/EPSS data, and builds a cited screen of which EU security obligations (GDPR, NIS2, CRA, AI Act) may apply and which need determination - every regulatory statement fetched from officially published text through the Ansvar Gateway connector at answer time, with scope, role, and application-date limits stated. Never answered from model memory; never a compliance verdict.

Compliance & Regulatory
52
5
Jul 19, 2026
A. AI /

incident-reporting-navigator

One security incident can trigger several EU reporting regimes at once. This skill screens NIS2, GDPR, DORA, and the Cyber Resilience Act for each involved legal entity, applies the served trigger tests, checks each duty was actually in force for the incident, resolves the receiving authority per regime and member state from served national law (e.g. Dutch and German transpositions), and produces a deadline table in which every duty, authority, and deadline is quoted and cited from official publisher text. Requires the free Ansvar Gateway MCP connector; never answers from model memory - a connector failure is never converted into "no duty exists".

Compliance & Regulatory
44
7
Jul 19, 2026
A. AI /

cra-vulnerability-obligations

Cited EU Cyber Resilience Act assessment for a product with digital elements: scope, product classification, role-specific vulnerability-handling duties, and Article 14 reporting - joined with live CVE / CISA-KEV / EPSS vulnerability intelligence, and a NIS2 / GDPR / DORA entity-level screen. Requires the free Ansvar Gateway MCP connector; every legal claim is fetched from official publisher text at answer time and cited, never answered from model memory.

Technology & Digital
112
16
Aug 6, 2026
W. Plutat /

eu-ai-governance

EU AI Act governance, risk classification, DPIA workflows, and compliance automation for European in-house legal and compliance teams. Built for DACH enterprises. Extends Anthropic's legal plugin with deep EU regulatory expertise.

Immigration & Nationality
19
1
Jul 17, 2026
A. Nikkola /

ulkomaalaisoikeus

Suomen ulkomaalaisoikeus työnantajan ja avustajan näkökulmasta: työperusteiset oleskeluluvat (ulkomaalaislaki 301/2004), työnantajan velvollisuudet ja seuraamukset sekä EU-kansalaisen, perheenjäsenen ja pysyvän oleskelun kysymykset kansalaisuuteen asti.

Data Protection & Privacy
36
5
Jul 17, 2026
A. Nikkola /

tietosuoja

Henkilötietojen käsittelyn tietosuoja EU:n tietosuoja-asetuksen (2016/679) ja tietosuojalain (1050/2018) mukaan: käsittelyn arviointi ja DPIA, tietosuojaseloste ja seloste käsittelytoimista sekä rekisteröidyn tietopyyntöihin vastaaminen.

Technology & Digital
39
4
Jul 17, 2026
A. Nikkola /

tekoalysaantely

EU:n tekoälyasetuksen (asetus (EU) 2024/1689, AI Act) noudattaminen suomalaisessa kontekstissa: tekoälyjärjestelmän riskiluokittelu, velvoitteet roolin ja riskiluokan mukaan sekä määräajat, seuraamukset, GPAI-kynnys ja perusoikeusvaikutusten arviointi (FRIA). Nojaa avoimeen, deterministiseen EU AI Act -MCP:hen.

Banking & Finance
31
1
Jul 17, 2026
A. Nikkola /

pankki-ja-rahoitus

Suomen pankki- ja rahoitusoikeus: rahoitussopimukset ja vakuudet (velkakirjalaki 622/1947, takauslaki 361/1999), rahanpesun ja terrorismin rahoittamisen estäminen (444/2017) sekä arvopaperimarkkinasääntely ja listayhtiön velvoitteet (AML 746/2012, MAR).

Compliance & Regulatory
20
1
Jul 17, 2026
A. Nikkola /

kilpailuoikeus

Suomen ja EU:n kilpailuoikeus: kielletyt kilpailunrajoitukset ja määräävän aseman väärinkäyttö (kilpailulaki 948/2011, SEUT 101 ja 102 artikla), yrityskauppavalvonta sekä kilpailu-compliance ja KKV:n tarkastuksiin varautuminen.

Compliance & Regulatory
229
17
Jul 13, 2026
G. Skuza /

monitor-prawa-ue-i-polskiego

Wyszukiwanie, pobieranie i analiza aktów prawnych UE oraz polskich aktów i projektów wdrażających regulacje UE (np. PPWR, CBAM, EUDR, ESPR, CSRD, CSDDD, GPSR, AI Act, baterie, ekoprojekt). Używaj, gdy użytkownik potrzebuje statusu prawnego, dat stosowania, przepisów przejściowych, relacji aktów, obowiązków compliance i raportu z podstawami prawnymi oraz źródłami urzędowymi.

Compliance & Regulatory
91
14
Jul 5, 2026
O. Schmidt-Prietz /

eu-ai-act-transparency-assessor

Assesses which of the Art. 50(1)-(5) transparency obligations of the EU AI Act apply to a given AI system's provider or deployer, grounded in the final Code of Practice on Transparency of AI-Generated Content (June 2026) and the Commission's draft Art. 50 Guidelines. Covers AI-chatbot disclosure, deepfake and synthetic-content marking/watermarking, emotion-recognition and biometric-categorisation notices, the machine-readable marking duty, the obviousness exceptions, and the implementation timeline. Outputs a formal mini-report plus a per-obligation compliance checklist with gap flags. For breadth-first tier triage use the EU AI Act System Classifier; for raw Art. 50 text and Q&A use the EU AI Act Knowledge Base; for the full role x tier matrix use the EU AI Act Obligations Mapper.

Technology & Digital
109
33
Jun 16, 2026
O. Schmidt-Prietz /

eu-data-act

Practitioner skill for EU Regulation 2023/2854 (Data Act). Covers Chapters II-VII (IoT data access, mandatory B2B sharing, unfair contract terms, public-sector exceptional need, cloud switching, third-country governmental access) and Chapter VIII (interoperability and smart contracts, gate-only). Use when the user asks about Data Act rights or obligations, drafts a Data Act notice or letter, reviews a data-sharing or cloud-switching contract under the Data Act, runs a Data Act gap analysis, or asks how the Data Act interacts with GDPR, the DMA, the Trade Secrets Directive, or sectoral law. Triggers include "Data Act", "Datengesetz", "Regulation (EU) 2023/2854", "Art. 4(1) request", "Art. 5(1) third-party request", "trade-secret handbrake", "cloud switching obligations", "Chapter VI", "Ch V exceptional need", and references to specific Data Act articles or recitals.

Data Protection & Privacy
131
31
Jun 13, 2026
O. Schmidt-Prietz /

data-processing-agreement-art-28-gdpr

Review, draft, or redline a Data Processing Agreement (DPA / Auftragsverarbeitungsvertrag / AVV) under Art. 28 GDPR, or prepare a Joint Controller Arrangement under Art. 26 GDPR (basic). Supports bilingual output (DE/EN), both controller- and processor-side perspectives, and two review depths — quick (Art. 28(3)(a)–(h) coverage) and negotiation-grade (clause-by-clause risk scoring).

Compliance & Regulatory
96
30
Jun 9, 2026
O. Schmidt-Prietz /

eu-ai-act-knowledge-base

Authoritative regulatory Q&A grounded in 70 official EU source documents, including the 2026 Commission draft guidelines on Art. 6 high-risk classification. Answers any EU AI Act question with article-level citations from the full regulation text, Commission guidelines, EDPB/EDPS opinions, codes of practice, harmonised standards, FRIA guides, and sector-specific guidance — covering penalties, timelines, GPAI obligations, high-risk and prohibited practices, and the AI Act / GDPR interplay.

Compliance & Regulatory
79
20
Jun 9, 2026
O. Schmidt-Prietz /

eu-ai-act-high-risk-classifier

Depth assessment of whether an AI system is high-risk under Art. 6 of the EU AI Act, grounded in the Commission's draft Art. 6(5) classification guidelines (general principles + Annex I + Annex III). Covers the Annex I product-safety route, all eight Annex III areas with worked examples, the Art. 6(3) exception and its profiling re-exception, and the Art. 25 quasi-provider trap. Outputs a structured decision block, a practitioner memo, and a JSON interchange artefact.

Legal Research & Analysis
60
11
Jun 9, 2026
O. Schmidt-Prietz /

legal-analysis-forge

EU Digital Regulation Legal Analysis Forge — generates a tailored expert prompt for structured legal analysis of an EU digital-regulation document, optionally executes it in-session, and always produces a plain-English explainer alongside the formal output. Handles Regulations, Directives, Commission Guidelines, EDPB Opinions, CJEU and AG judgments, national DPA decisions, codes of conduct, and draft consultations across the EU digital stack.

Data Protection & Privacy
95
28
Jun 9, 2026
O. Schmidt-Prietz /

transfer-impact-assessment-tia

GDPR Transfer Impact Assessment for Chapter V transfers under the EDPB Recommendations 01/2020 six-step methodology, the CNIL TIA Guide (January 2025), and EDPB essential guarantees. Handles transfer qualification, Art. 45 adequacy fast-tracks, Art. 46 full assessments with country profiles for 12 jurisdictions, and balanced Art. 49 derogation analysis. Outputs a Markdown report, a .docx formal TIA, and a JSON delta for RoPA interchange.

Commercial & Contracts
174
33
May 26, 2026
T. Project /

climate-aligned-contracts

Draft, adapt, and review contracts and clauses aligned with The Chancery Lane Project's methodology for reducing carbon emissions through legal agreements. Use when Claude needs to: (1) Draft new climate-aligned clauses (e.g., net zero commitments, carbon accounting, supply chain decarbonization), (2) Adapt or modify existing contracts to incorporate climate objectives, (3) Review and analyze clauses for alignment with climate goals and decarbonization strategies, (4) Provide guidance on The Chancery Lane Project's house style and drafting methodology for climate-conscious legal work.