Compliance Check scans privacy policies, vendor agreements, data processing addenda, breach response plans, and other regulated documents against the regulatory frameworks you select. It returns a requirement-by-requirement scorecard, identifies gaps, and drafts remediation language you can use.Documentation Index
Fetch the complete documentation index at: https://vaquill.ai/docs/llms.txt
Use this file to discover all available pages before exploring further.
Supported Frameworks
United States
| Framework | Coverage |
|---|---|
| HIPAA | Health information privacy and security |
| CCPA / CPRA | California consumer privacy |
| SOX | Sarbanes-Oxley financial controls |
| PCI DSS | Payment card data security |
| SOC 2 | Service organization controls |
Europe and United Kingdom
| Framework | Coverage |
|---|---|
| GDPR | EU General Data Protection Regulation |
| UK GDPR | United Kingdom data protection |
| DORA | EU digital operational resilience |
| NIS2 | EU cybersecurity directive |
Other Jurisdictions
| Framework | Coverage |
|---|---|
| LGPD | Brazil data protection |
| DPDP Act | India data protection |
What It Produces
For each requirement in the framework, you get:- A status: Compliant, Partially Compliant, Non-Compliant, or Not Applicable
- The clause in your document that addresses (or fails to address) the requirement
- A short explanation of why the status was assigned
- A remediation action if the requirement is not fully met
- A priority rating (Critical, High, Medium, Low) and an estimated effort to fix
Document Types It Handles
- Privacy policies and notices
- Data Processing Agreements (DPAs)
- Terms of service and end-user agreements
- Vendor and subprocessor contracts
- Breach response plans and incident playbooks
- Consent forms and cookie notices
- Information security policies
- Employee handbooks (privacy and security sections)
How To Run It
Upload or open the document
Drop the file into a conversation, or pick a document already attached to your matter.
Open Compliance Check
Select Compliance Check from the tools menu, or type “run a compliance check” in chat.
Pick one or more frameworks
Choose a single framework for focused review or scan against multiple frameworks in one pass.
Confirm document type
The tool auto-detects (privacy policy, DPA, vendor contract, etc.). Override if the classification is wrong.
Larger documents are processed in sections so every clause gets a focused review rather than a high-level pass.
Ready-to-run prompt
DPA compliance scorecard - score a vendor's Data Processing Agreement against GDPR + CCPA in one pass.
Reading the Scorecard
Each row in the scorecard maps one requirement to one section of your document. Click into a row to see:- The exact text in your document that was matched
- The regulatory text of the requirement
- Whether the language meets the standard, falls short, or is missing
- The suggested fix with drafted replacement language where applicable
Remediation Plan
The scorecard rolls up into a remediation plan grouped by priority:| Priority | What It Means | Typical Examples |
|---|---|---|
| Critical | Missing or unlawful provisions that create immediate exposure | No lawful basis for processing, missing breach notification clause |
| High | Significant gaps that regulators or counterparties will flag | Vague data subject rights, no subprocessor list |
| Medium | Best-practice items that strengthen the document | Granular consent options, retention specifics |
| Low | Polish and clarity improvements | Defined-term cleanup, plain-language rewrites |
Export
- Word memo - Full scorecard with drafted remediation language, ready to share with the client or in-house team
- PDF report - Read-only version for stakeholders and audit files
- Spreadsheet - Tracker format for working through fixes in a team
Tips
Related
Contract Review
Clause-level review with redlines and firm playbooks.
Risk Assessment
5x5 severity-likelihood scoring for legal risks.
Document Analyst
Ask any question about an uploaded document with sourced answers.
Skills: Privacy Compliance
The saved playbook this tool runs under the hood.

