regional-data-compliance-and-sovereignty — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited regional-data-compliance-and-sovereignty (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Use this skill when data obligations differ by jurisdiction, sector, or supervisory authority. It helps agents translate legal and policy requirements into engineering decisions for storage location, transfer boundaries, access, retention, deletion, and audit evidence. This skill is not legal advice; it is the engineering planning layer that should work with legal, privacy, and compliance owners.
Europe, the USA, India, Saudi Arabia, or other multi-jurisdiction footprintsGDPR, PDPL, DPDP, state privacy, or sector-specific obligationsSAMA add extra controlsDo not assume one global control pattern satisfies every jurisdiction.
Include:
Identify:
Controls may include:
Decide:
Require:
| Rationalization | Reality |
|---|---|
| "Our global standard should be enough everywhere." | Jurisdictions often differ on transfer controls, evidence, localization, and supervisory expectations. |
| "The cloud region solves sovereignty automatically." | Region choice alone does not control support access, backups, logs, exports, or downstream copies. |
| "It is only analytics data." | Analytics copies still create residency, deletion, and transfer obligations. |
SAMA, GDPR, DPDP, or similar obligations are mentioned with no named control owner~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.