GDPR and privacy compliance review covering data collection, consent mechanisms, retention policies, and PII handling.
This audit evaluates 22 checks across personal data inventory and minimization, consent collection and withdrawal mechanisms, privacy policy completeness, data retention and deletion workflows, third-party data sharing disclosure, and cookie compliance. For projects handling EU user data or seeking SOC 2 alignment, this audit provides a structured gap assessment against regulatory requirements.
22
Total Checks
3
Delivery Formats
4
Categories
5
Versions
Included
Never included
Quality hardening: added counting/enumeration, numeric thresholds, anti-sycophancy patterns, cross-references to all checks. Manifests tightened to exact tolerances.
2026-04-03
Added chunked format for browser-based tools
2026-03-01
Improved Step 3: paste URL is now primary submission method
2026-03-01
Hardened curl commands with -sS -L flags for redirect following and error visibility. Added response validation guidance to Step 3.
2026-02-23
Initial release
2026-02-01
Picked by pack overlap with this audit.
Data handling assessment across the AI processing pipeline, covering storage, retention, PII protection, and user control over third-party model data sharing.
Safety assessment against prompt injection attacks, identifying vulnerabilities where untrusted user input might cause the AI to ignore instructions or exfiltrate data.
Comprehensive security audit for REST and GraphQL APIs, covering authentication, authorization, input validation, and protection against OWASP API Top 10 threats.
Production-ready authentication assessment covering session management, login flow security, password handling, and OAuth integrations.
Authorization layer assessment covering access control, resource authorization, API permissions, and admin boundary enforcement.