Back to list
SylphxAI

privacy

by SylphxAI

🚀 AI development platform with MEP architecture - stop writing prompts, start building with 90% less typing

4🍴 3📅 Jan 8, 2026

SKILL.md


Privacy Guideline

Tech Stack

  • Analytics: PostHog
  • Email: Resend
  • Tag Management: GTM (marketing only)
  • Observability: Sentry

Non-Negotiables

  • Analytics and marketing must not fire before user consent
  • PII must not leak into logs, Sentry, PostHog, or third-party services
  • Account deletion must propagate to all third-party processors
  • Marketing tags (GTM, Google Ads) must not load without consent
  • Conversion tracking must be server-truth aligned, idempotent, and deduplicated

Context

Privacy isn't just compliance — it's trust. Users share data expecting it to be handled responsibly. Every log line, every analytics event, every third-party integration is a potential privacy leak.

The review should verify that actual behavior matches stated policy. If the privacy policy says "we don't track without consent," does the code actually enforce that? Mismatches are not just bugs — they're trust violations.

Driving Questions

  • Does the consent implementation actually block tracking, or just record preference?
  • Where does PII leak that we haven't noticed?
  • If a user requests data deletion, what actually gets deleted vs. retained?
  • Does the privacy policy accurately reflect what the code actually does?
  • How would we handle a GDPR data subject access request today?
  • What data are we collecting that we don't actually need?

Score

Total Score

75/100

Based on repository quality metrics

SKILL.md

SKILL.mdファイルが含まれている

+20
LICENSE

ライセンスが設定されている

+10
説明文

100文字以上の説明がある

+10
人気

GitHub Stars 100以上

0/15
最近の活動

3ヶ月以内に更新

+5
フォーク

10回以上フォークされている

0/5
Issue管理

オープンIssueが50未満

+5
言語

プログラミング言語が設定されている

+5
タグ

1つ以上のタグが設定されている

+5

Reviews

💬

Reviews coming soon