ISO 27701 PIMS Extension Author
Get Started with This SkillOverview
Guided elaboration of PIMS documentation as an extension to ISMS: PII processing inventory, privacy objectives, processing purposes and legal basis, and controller/processor annex controls.
Getting Started
Add your source materials to the project workspace, then activate the ISO 27701 PIMS Extension Author skill. The agent will guide you through the process step by step.
Example Conversation
You: We need a PII inventory and PIMS extension for our ISO 27001. We’re both controller and processor for some activities.
Agent: I’ll draft the PII processing inventory with purpose, legal basis, and retention per activity, and map Clause 6 (controller) and Clause 7 (processor) controls with implementation or justification.
You: Run the validator.
Agent: I ran
check_pii_inventory_controller_processor. PII fields and controller/processor content present. No warnings.
Sample Output Excerpt
Processing activity — HR payroll. Purpose: Payroll. Legal basis: Contract (Art. 6(1)(b)). Retention: 7 years post-employment. Clause 6.2.1 — Implemented via HR Data Protection Procedure v2.
Built-in Validation Tools
check_pii_inventory_controller_processor checks for purpose, legal basis, retention in PII inventory and implementation or justification for controller/processor (Clause 6/7) controls. Run on PIMS document after drafting.