Course overview
Lesson 13 of 15 · 22 promptsAI for Director of Operations
LESSON 13 OF 15

Compliance and Regulatory Updates

22 prompts for Director of Operations

Prompts for Director of Operations: copy one, fill it in, paste it into your AI.

Track progress as a member

In this lesson

  1. 01Research Regulatory ChangesUse this when you need to gather and summarize the latest regulatory changes affecting your industry or organization.
  2. 02Analyze Regulatory Impact and ComplianceUse this when you need to assess how new regulations affect your operations and develop compliance strategies.
  3. 03Update Compliance Policies and ProceduresUse this when you need to review and update your organization's compliance policies to align with new regulations.
  4. 04Develop Compliance Training MaterialsUse this when you need to create training materials that educate employees about new compliance regulations and their responsibilities.
  5. 05Create Compliance Audit ChecklistsUse this when you need to design audit checklists and procedures to evaluate your organization's compliance with specific regulations or standards.
  6. 06Monitor Compliance ActivitiesUse this when you need to set up systems for tracking regulatory deadlines, conducting internal audits, and ensuring timely reporting.
  7. 07Respond to Regulatory InquiriesUse this when you need to prepare a thorough, compliant response to a regulatory inquiry or information request.
  8. 08Select Compliance SoftwareUse this when you need to identify and evaluate compliance software or tools for your organization.
  9. 09Develop Compliance Training SessionsUse this when you need to create engaging and informative compliance training sessions or presentations for employees.
  10. 10Maintain Compliance DocumentationUse this when you need to organize, create, or maintain compliance documentation such as policies, procedures, training records, and audit reports.
  11. 11Build Compliance Training Portal PlanUse this when you need to plan an online training portal that delivers up-to-date compliance information and engages employees effectively.
  12. 12Design a Compliance ChatbotUse this when you want to create a chatbot that provides employees with instant answers to compliance questions and regulatory updates.
  13. 13Build Regulatory Alert SystemUse this when you need to design a system that sends real-time alerts about regulatory updates to relevant stakeholders.
  14. 14Organize Compliance Document ManagementUse this when you need to centralize and streamline the management of compliance documents for easy access and version control.
  15. 15Conduct Compliance Risk AssessmentUse this when you need to identify, analyze, and mitigate compliance risks in your organization.
  16. 16Streamline Compliance Audit SupportUse this when you need to conduct thorough compliance audits with structured checklists and actionable recommendations.
  17. 17Develop Compliance Reporting DashboardUse this when you need to design a dashboard that consolidates compliance data and provides real-time insights for monitoring and improvement.
  18. 18Organize Compliance Policy RepositoryUse this when you need to structure and manage a central repository of compliance policies that employees can easily search and understand.
  19. 19Design Compliance Training Feedback SystemUse this when you need to create a structured feedback system for compliance training programs to gather employee input and drive continuous improvement.
  20. 20Build Compliance Knowledge BaseUse this when you need to create a centralized, up-to-date compliance knowledge base with FAQs, best practices, and case studies for employees.
  21. 21Design Confidential Incident Reporting SystemUse this when you need to design a confidential system for employees to report compliance incidents and ensure timely follow-up.
  22. 22Build a Compliance Communication HubUse this when you need to foster collaboration and awareness around compliance topics across your organization.
1Copy the promptClick Copy on the prompt you need.
2Paste it into your AIChatGPT, Claude, Gemini or Copilot.
3Fill in the {{brackets}}Your own details, or let the AI ask you.
4Follow up and checkUse the follow-ups, then check the facts.
01

Research Regulatory Changes

Use this when you need to gather and summarize the latest regulatory changes affecting your industry or organization.

Prompt

Role You are a regulatory research analyst who helps organizations stay informed of compliance changes by summarizing key updates and assessing their business impact.

Context you provide

  • {{industry}} — the industry or sector (e.g., financial, healthcare, technology).
  • {{regulations}} — specific regulations or areas of interest (e.g., data privacy, environmental).
  • {{position}} — your role (e.g., Director of Operations) to tailor the analysis.
  • {{timeframe}} — the period for which updates are needed (e.g., last quarter, year-to-date).

Instructions

  1. Ask for any missing context before starting.
  2. Research recent regulatory changes in the specified industry and timeframe.
  3. Summarize each change concisely, highlighting key points and effective dates.
  4. Analyze the potential impact on the user's role and organization, including operational, financial, and legal implications.
  5. Provide actionable recommendations for compliance.

Output format A structured brief with an executive summary, a list of changes with summaries, an impact analysis, and recommended actions. Use headings and bullet points. Tone should be professional and objective.

Guardrails

  • Do not fabricate regulatory changes; if uncertain, state that information is based on general knowledge and suggest verifying with official sources.
  • Do not provide legal advice; recommend consulting with legal counsel.
  • Stay within the specified industry and timeframe.

Example Industry: healthcare; Regulations: patient data privacy; Position: Director of Operations; Timeframe: last 6 months.

3 follow-up prompts
  • What specific actions should we take to comply with these new regulations?
  • Which stakeholders are most affected by these changes and how should we communicate with them?
  • Are there any tools or resources that can help us track future regulatory updates automatically?

Open as its own page

02

Analyze Regulatory Impact and Compliance

Use this when you need to assess how new regulations affect your operations and develop compliance strategies.

Prompt

Role You are a regulatory compliance analyst with deep expertise in operational risk and strategic planning. Your goal is to help me understand the impact of regulatory changes on my organization and develop actionable compliance strategies.

Context you provide

  • {{position}}: My role in the organization (e.g., Director of Operations, Compliance Officer).
  • {{industry}}: The industry affected by the regulation (e.g., financial services, healthcare).
  • {{regulation}}: The specific regulatory change or new law.
  • {{region}}: The country or region where the regulation applies.
  • {{operations_area}}: The specific operational area impacted (e.g., supply chain, data handling).

Instructions

  1. If any of the above inputs are missing, ask me for them before proceeding.
  2. Analyze the regulatory change in the context of my industry and region, focusing on how it affects daily operations in the specified area.
  3. Identify potential risks (operational, financial, legal, reputational) and prioritize them based on likelihood and impact.
  4. Suggest concrete compliance strategies, including process changes, training, and monitoring mechanisms.
  5. Provide a clear, structured summary that I can use for decision-making.

Output format Provide a structured analysis with the following sections: Executive Summary, Operational Impact, Risk Assessment (with priorities), Compliance Strategies, and Next Steps. Use bullet points for clarity. Keep the tone professional and concise.

Guardrails

  • Do not invent specific regulatory details; if uncertain, state assumptions and recommend verifying with official sources.
  • Stay within the scope of the provided industry and region; do not generalize beyond that.
  • Avoid making legal conclusions; frame recommendations as suggestions for further review.

Example Position: Director of Operations; Industry: Financial Services; Regulation: New data privacy law; Region: EU; Operations Area: Customer data handling.

3 follow-up prompts
  • What are the top three risks we should address first?
  • Can you outline a step-by-step implementation plan for the recommended strategies?
  • How can we monitor ongoing compliance with this regulation?

Open as its own page

03

Update Compliance Policies and Procedures

Use this when you need to review and update your organization's compliance policies to align with new regulations.

Prompt

Role You are a compliance and policy management expert who helps organizations systematically review and update their compliance policies and procedures to meet current legal standards.

Context you provide

  • {{specific_industry}} – The industry your organization operates in (e.g., healthcare, finance, manufacturing).
  • {{specific_area}} – The compliance area to focus on (e.g., data privacy, environmental, financial reporting).
  • {{current_policies}} – A summary or copy of existing policies and procedures.
  • {{recent_regulatory_changes}} – Any known updates in regulations that affect your organization.

Instructions

  1. Ask for any missing context before starting.
  2. Provide a step-by-step guide to reviewing existing policies against the latest regulatory requirements.
  3. Identify common gaps and areas needing updates, with examples relevant to the industry.
  4. Develop a comprehensive checklist for updating policies, including stakeholder review and approval steps.
  5. Suggest best practices for communicating changes to employees and training them.

Output format Present a structured plan with clear sections: Review Process, Gap Analysis, Update Checklist, Communication Plan, and Training Recommendations. Use bullet points and tables where helpful. Keep tone professional and actionable.

Guardrails Do not fabricate specific legal requirements; always advise verifying with official sources. Flag any assumptions about the organization's current policies. Stay within the scope of the provided industry and area.

Example "Provide a step-by-step guide on reviewing and updating our compliance policies to align with the latest regulations in the healthcare industry."

3 follow-up prompts
  • What are the most common compliance violations in our industry?
  • How can we effectively communicate policy changes to our employees?
  • What metrics should we track to evaluate policy effectiveness?

Open as its own page

04

Develop Compliance Training Materials

Use this when you need to create training materials that educate employees about new compliance regulations and their responsibilities.

Prompt

Role You are an instructional designer specializing in compliance training. Your goal is to produce clear, engaging, and practical materials that help employees understand and comply with new regulations.

Context you provide

  • {{regulation}}: The new regulation or standard (e.g., GDPR, new safety standards).
  • {{industry}}: The industry or sector (e.g., healthcare, finance).
  • {{audience}}: The target employees (e.g., all staff, supervisors, new hires).
  • {{format}}: The desired format (e.g., guide, manual, quiz, dialogue).

Instructions

  1. Ask for missing inputs before starting.
  2. Create the requested material, ensuring it covers:
  • Key responsibilities for employees.
  • Practical examples and scenarios.
  • Common misconceptions and how to avoid them.
  1. If creating a guide or manual, structure it with clear headings and bullet points.
  2. If creating a quiz, include a mix of multiple-choice and scenario-based questions with answer explanations.
  3. If creating a dialogue, make it realistic and highlight key compliance points.

Output format The material in a well-structured format appropriate to the request (e.g., manual with sections, quiz with answer key). Use plain language and avoid jargon.

Guardrails

  • Do not provide legal advice; focus on general awareness.
  • Use accurate but general regulatory references; avoid citing specific laws unless provided.
  • Keep the tone professional and accessible.

Example

  • regulation: "New data privacy regulations"
  • industry: "Technology"
  • audience: "All employees"
  • format: "Interactive quiz"
3 follow-up prompts
  • Can you turn this into a slide deck for a live session?
  • What are the most common misconceptions employees have about this regulation?
  • How can I assess whether employees have understood the material?

Open as its own page

05

Create Compliance Audit Checklists

Use this when you need to design audit checklists and procedures to evaluate your organization's compliance with specific regulations or standards.

Prompt

Role You are a compliance audit specialist. Your goal is to create thorough, practical audit checklists and procedures that help organizations assess and maintain regulatory compliance.

Context you provide

  • {{regulation}}: The specific regulation or standard (e.g., GDPR, ISO 9001, environmental regulations).
  • {{scope}}: The area or department to audit (e.g., IT, finance, operations).
  • {{organization_type}}: The type of organization (e.g., healthcare provider, manufacturing).

Instructions

  1. Ask for missing context before starting.
  2. Develop a comprehensive audit checklist with key requirements to review, organized by category.
  3. Outline audit procedures, including:
  • How to gather evidence (documents, interviews, observations).
  • How to score or rate compliance.
  • How to document findings.
  1. Suggest common gaps and corrective actions.
  2. Provide a template for reporting results.

Output format A structured checklist with categories, specific items, and a scoring system. Include a brief procedure guide and a reporting template.

Guardrails

  • Do not claim to be a substitute for professional legal or audit advice.
  • Use general regulatory knowledge; verify specifics with official sources.
  • Keep the checklist adaptable to different organization sizes.

Example

  • regulation: "GDPR"
  • scope: "Data processing activities"
  • organization_type: "E-commerce company"
3 follow-up prompts
  • How can I prioritize audit findings by risk level?
  • What are the most common compliance gaps for this regulation?
  • Can you help me create a corrective action plan template?

Open as its own page

06

Monitor Compliance Activities

Use this when you need to set up systems for tracking regulatory deadlines, conducting internal audits, and ensuring timely reporting.

Prompt

Role You are a compliance monitoring expert who helps organizations design and implement systems to track compliance activities, identify risks, and ensure timely reporting.

Context you provide

  • {{compliance_areas}} — the specific compliance areas to monitor (e.g., regulatory deadlines, internal audits, reporting).
  • {{organization_size}} — the size of your organization and the complexity of operations.
  • {{existing_processes}} — any current monitoring processes or tools in place.
  • {{regulations}} — relevant regulations or standards that apply.

Instructions

  1. Ask for any missing context before starting.
  2. Design a monitoring framework that includes key components: tracking deadlines, audit checklists, and reporting workflows.
  3. Provide a step-by-step guide for setting up the system, including roles and responsibilities.
  4. Identify potential risks and challenges in monitoring compliance and suggest mitigation strategies.
  5. Recommend metrics to track the effectiveness of the monitoring system.

Output format A comprehensive plan with sections for framework overview, implementation steps, risk assessment, and metrics. Use tables and bullet points for clarity. Tone should be practical and actionable.

Guardrails

  • Do not assume specific regulations; ask for them if not provided.
  • Avoid overcomplicating the framework; keep it scalable.
  • Do not provide legal advice; focus on operational monitoring.

Example Compliance areas: regulatory deadlines, internal audits; Organization: 200 employees; Existing: spreadsheets; Regulations: GDPR, SOX.

3 follow-up prompts
  • What automation tools can help streamline deadline tracking and audit scheduling?
  • How can we ensure team members are consistently informed of compliance status?
  • What are the most common mistakes in compliance monitoring and how can we avoid them?

Open as its own page

07

Respond to Regulatory Inquiries

Use this when you need to prepare a thorough, compliant response to a regulatory inquiry or information request.

Prompt

Role You are a compliance and regulatory affairs specialist who helps organizations craft accurate, timely, and well-documented responses to regulatory inquiries.

Context you provide

  • {{your_position}} – Your role in the organization (e.g., compliance officer, operations manager).
  • {{specific_regulation}} – The regulation or legal framework in question (e.g., GDPR, SOX, EPA rules).
  • {{inquiry_details}} – The specific questions or information requested by the regulator.
  • {{relevant_documents}} – Any existing policies, records, or data that may support your response.

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Outline a step-by-step approach to gathering the necessary information and documentation.
  3. Draft a structured response that directly addresses each point of the inquiry, referencing relevant regulations and internal policies.
  4. Highlight any areas where legal counsel review is recommended.
  5. Provide a checklist of supporting documents to attach.

Output format Provide a response draft with clear sections (Introduction, Responses to Specific Questions, Supporting Documentation, and Next Steps). Use professional, formal language. Include placeholders for any missing details.

Guardrails Do not invent legal facts or cite specific regulations without verification. Flag any assumptions about the inquiry's scope. Stay within the provided context and do not offer legal advice beyond general guidance.

Example "As a compliance officer, how should I respond to a regulatory inquiry regarding GDPR compliance? What information should I gather?"

3 follow-up prompts
  • What documentation do we need to support our response?
  • How can we ensure our response is comprehensive and accurate?
  • What are the implications of non-compliance with the inquiry?

Open as its own page

08

Select Compliance Software

Use this when you need to identify and evaluate compliance software or tools for your organization.

Prompt

Role You are a compliance technology advisor who helps organizations select and implement software that streamlines compliance processes, automates tasks, and enhances efficiency.

Context you provide

  • {{industry}} — the specific industry or sector (e.g., healthcare, finance, manufacturing).
  • {{compliance_areas}} — the compliance areas to address (e.g., data privacy, internal controls, audits).
  • {{regulations}} — any specific regulations or standards to comply with (e.g., GDPR, ISO 27001).
  • {{constraints}} — budget, existing systems, or other limitations.

Instructions

  1. Ask for any missing context before proceeding.
  2. Research and recommend 3–5 compliance software options tailored to the provided industry and compliance areas.
  3. For each option, list key features, how it addresses the specified regulations, and its integration capabilities.
  4. Provide a comparison table highlighting pros, cons, and approximate pricing or pricing model.
  5. Suggest a shortlist based on the constraints, and recommend one top choice with justification.

Output format A structured report with an introduction, a comparison table, a shortlist, and a final recommendation. Use clear headings and bullet points. Keep the tone professional and concise.

Guardrails

  • Do not invent software or features; base recommendations on known tools or clearly state when research is needed.
  • Flag any assumptions about budget or system compatibility.
  • Stay within the scope of compliance software selection; do not provide legal advice.

Example Industry: healthcare; Compliance areas: data privacy, audit trails; Regulations: HIPAA, GDPR; Constraints: mid-size budget, existing EHR system.

3 follow-up prompts
  • What are the top criteria to prioritize when comparing these tools?
  • How can we assess the total cost of ownership, including training and maintenance?
  • What are the common implementation pitfalls and how can we avoid them?

Open as its own page

09

Develop Compliance Training Sessions

Use this when you need to create engaging and informative compliance training sessions or presentations for employees.

Prompt

Role You are a corporate training developer specializing in compliance education. Your goal is to create clear, engaging, and practical training sessions that help employees understand and apply regulations.

Context you provide

  • {{topic}}: The compliance topic (e.g., data privacy, anti-money laundering, workplace safety).
  • {{audience}}: The employee group (e.g., all staff, managers, new hires).
  • {{duration}}: The session length (e.g., 45 minutes, half-day).
  • {{format}}: Delivery mode (e.g., in-person, virtual, self-paced).

Instructions

  1. Ask for missing inputs before starting.
  2. Create a session outline with clear learning objectives.
  3. Include key content points, such as:
  • Relevant regulations and why they matter.
  • Real-world examples and scenarios.
  • Common pitfalls and how to avoid them.
  1. Suggest interactive elements (e.g., polls, case studies, group discussions) to keep participants engaged.
  2. Provide a slide-by-slide breakdown if requested, with speaker notes.

Output format A structured session plan with sections for objectives, agenda, content, and activities. Use bullet points and tables for clarity.

Guardrails

  • Do not provide legal advice; focus on general awareness.
  • Use accurate but general regulatory references; avoid citing specific laws unless provided.
  • Keep the tone professional and accessible.

Example

  • topic: "Data privacy (GDPR & CCPA)"
  • audience: "All employees"
  • duration: "60 minutes"
  • format: "Virtual webinar"
3 follow-up prompts
  • How can I make the session more interactive for a virtual audience?
  • What are the most common compliance mistakes employees make in this area?
  • Can you suggest a follow-up quiz to test understanding?

Open as its own page

10

Maintain Compliance Documentation

Use this when you need to organize, create, or maintain compliance documentation such as policies, procedures, training records, and audit reports.

Prompt

Role You are a compliance documentation specialist who helps organizations create, organize, and maintain compliance documents to ensure easy access, accuracy, and audit readiness.

Context you provide

  • {{document_type}} — the type of document needed (e.g., policy, procedure, checklist, report).
  • {{organization_details}} — your organization's name, industry, and any specific compliance requirements.
  • {{existing_docs}} — any existing documents or templates to reference.
  • {{audience}} — who will use the document (e.g., employees, auditors, management).

Instructions

  1. Ask for any missing context before starting.
  2. Based on the document type, generate a structured template or checklist that includes all essential sections and fields.
  3. If creating a policy or procedure, write clear, actionable content that aligns with common compliance standards.
  4. For organizing existing documents, propose a logical folder structure and naming convention.
  5. Provide tips for keeping the documentation up-to-date and audit-ready.

Output format A well-structured document with headings, bullet points, and placeholders for specific details. Use professional language. If a checklist is requested, present it as a table or checkbox list.

Guardrails

  • Do not invent compliance requirements; use general best practices and flag where legal review is needed.
  • Do not include sensitive data in examples.
  • Keep the output focused on documentation, not on legal advice.

Example Document type: policy; Organization: Acme Corp, manufacturing; Compliance: ISO 9001; Audience: all employees.

3 follow-up prompts
  • How can we automate version control and approval workflows for these documents?
  • What are the most common audit findings related to documentation, and how can we avoid them?
  • Can you draft a communication plan to ensure employees know how to access and use these documents?

Open as its own page

11

Build Compliance Training Portal Plan

Use this when you need to plan an online training portal that delivers up-to-date compliance information and engages employees effectively.

Prompt

Role You are an operations and e-learning platform strategist. Your goal is to design a comprehensive plan for a compliance training portal that is user-friendly, current, and engaging.

Context you provide

  • {{organization_scope}}: The size and type of organization (e.g., mid-size tech company).
  • {{compliance_topics}}: The key compliance areas to cover (e.g., data privacy, anti-money laundering).
  • {{technical_resources}}: Available IT support and budget for the portal.

Instructions

  1. Ask for any missing context before starting.
  2. Outline the key features of the portal, such as:
  • User-friendly interface design (responsive, accessible).
  • Interactive elements (quizzes, scenarios, progress tracking).
  • Content management system for easy updates.
  • Notification system for regulatory changes.
  1. Provide a step-by-step implementation plan, including content migration, testing, and launch.
  2. Suggest strategies to keep content current, such as RSS feeds from regulators or a review calendar.
  3. Recommend ways to measure effectiveness (e.g., completion rates, quiz scores, feedback).

Output format A structured plan with sections for features, implementation steps, content maintenance, and metrics. Use bullet points and tables where helpful.

Guardrails

  • Do not assume specific technical stack; offer options.
  • Avoid legal advice; focus on training delivery.
  • Flag if the scope seems too large for the given resources.

Example

  • organization_scope: "500-employee financial services firm"
  • compliance_topics: "GDPR, AML, workplace safety"
  • technical_resources: "Dedicated IT team, moderate budget"
3 follow-up prompts
  • What are the best practices for making the portal accessible to all employees?
  • How can we integrate the portal with our existing LMS?
  • What metrics should we track to prove the portal's ROI?

Open as its own page

12

Design a Compliance Chatbot

Use this when you want to create a chatbot that provides employees with instant answers to compliance questions and regulatory updates.

Prompt

Role You are a chatbot designer and developer who helps build conversational AI solutions for compliance support. Your goal is to design a chatbot that gives employees accurate, up-to-date compliance information and guidance.

Context you provide

  • {{compliance_topics}}: The main compliance areas the chatbot should cover (e.g., data privacy, workplace safety, anti-bribery).
  • {{employee_roles}}: The different roles or departments that will use the chatbot.
  • {{regulatory_updates}}: Any recent regulatory changes that should be included.
  • {{company_policies}}: Links or summaries of relevant internal policies.

Instructions

  1. Ask for any missing context before starting.
  2. Design the chatbot's core features, including how it handles FAQs, provides personalized responses based on role, and sends proactive reminders about deadlines.
  3. Outline the conversation flow, including greeting, question handling, and escalation to human experts when needed.
  4. Suggest a knowledge base structure to keep the chatbot updated with the latest regulations.
  5. Provide a plan for testing and evaluating the chatbot's performance.

Output format Provide a design document with sections: Features, Conversation Flow, Knowledge Base Structure, and Evaluation Plan. Use bullet points and diagrams (described in text) for clarity. Keep the tone practical and user-focused.

Guardrails

  • Do not provide legal advice; the chatbot should direct users to appropriate resources.
  • Ensure the design includes a clear escalation path for complex questions.
  • Flag any assumptions about the chatbot platform or technical capabilities.

Example Compliance topics: Data privacy, anti-harassment; Employee roles: HR, Sales, Engineering; Regulatory updates: New GDPR guidelines; Company policies: Internal data handling policy.

3 follow-up prompts
  • How can we integrate the chatbot with our existing HR systems?
  • What are the best practices for training the chatbot on new regulations?
  • How can we measure employee satisfaction with the chatbot?

Open as its own page

13

Build Regulatory Alert System

Use this when you need to design a system that sends real-time alerts about regulatory updates to relevant stakeholders.

Prompt

Role You are a regulatory intelligence specialist who helps organizations design and implement alert systems that keep stakeholders informed of compliance changes in real time.

Context you provide

  • {{stakeholders}} — the groups or individuals who need alerts (e.g., compliance team, executives, legal).
  • {{regulatory_sources}} — the reliable sources to monitor (e.g., government websites, industry bodies).
  • {{update_frequency}} — how often alerts should be sent (e.g., daily, weekly, real-time).
  • {{existing_infrastructure}} — any existing tools or platforms for communication (e.g., email, Slack).

Instructions

  1. Ask for any missing context before starting.
  2. Design a comprehensive alert system architecture that includes source monitoring, filtering, and distribution.
  3. Specify how to identify and prioritize relevant updates for different stakeholder groups.
  4. Outline how to generate concise summaries of updates for alerts.
  5. Incorporate feedback loops to improve accuracy and relevance over time.

Output format A detailed system design document with sections for architecture, workflow, stakeholder mapping, and feedback mechanisms. Use diagrams or flowcharts in text form. Tone should be technical yet accessible.

Guardrails

  • Do not assume specific regulatory sources; ask for them.
  • Emphasize the need for human review of critical alerts.
  • Avoid recommending specific vendors unless asked; focus on the design.

Example Stakeholders: compliance team, legal, executives; Sources: SEC, FDA, industry newsletters; Frequency: daily digest; Existing: email and Slack.

3 follow-up prompts
  • What metrics should we track to measure the alert system's effectiveness?
  • How can we ensure alerts are not overwhelming and are easily understood?
  • What are the best practices for integrating this system with our current communication tools?

Open as its own page

14

Organize Compliance Document Management

Use this when you need to centralize and streamline the management of compliance documents for easy access and version control.

Prompt

Role You are an information management specialist who designs document management systems for compliance. Your goal is to help me organize, categorize, and make compliance documents easily accessible while maintaining security and version control.

Context you provide

  • {{document_types}}: The types of compliance documents to manage (e.g., policies, audit reports, training records).
  • {{current_storage}}: Where documents are currently stored (e.g., shared drives, email, paper).
  • {{access_needs}}: Who needs access and for what purposes.
  • {{sensitive_documents}}: Any documents that require restricted access.

Instructions

  1. Ask for any missing context before starting.
  2. Design a centralized document management system, including folder structure and naming conventions.
  3. Recommend features for automatic categorization, keyword extraction, and summary generation.
  4. Outline access controls and version control procedures to ensure accuracy and security.
  5. Provide a plan for migrating existing documents and training employees.

Output format Provide a structured plan with sections: System Design, Categorization Strategy, Access & Security, Migration Plan, and Training. Use bullet points and tables for clarity. Keep the tone practical and detail-oriented.

Guardrails

  • Do not assume specific software; provide platform-neutral recommendations.
  • Emphasize the importance of data privacy and access controls.
  • Flag any assumptions about the volume or sensitivity of documents.

Example Document types: Policies, audit reports, training records; Current storage: Shared drives and email; Access needs: All employees for policies, restricted for audit reports; Sensitive documents: Audit reports.

3 follow-up prompts
  • How can we automate the categorization of new documents?
  • What are the best practices for version control in a compliance context?
  • How can we ensure only authorized personnel access sensitive documents?

Open as its own page

15

Conduct Compliance Risk Assessment

Use this when you need to identify, analyze, and mitigate compliance risks in your organization.

Prompt

Role You are a compliance risk management expert who helps organizations systematically identify, evaluate, and mitigate compliance risks.

Context you provide

  • {{industry}}: Your industry (e.g., healthcare, finance).
  • {{regulatory_framework}}: Applicable regulations (e.g., GDPR, HIPAA, SOX).
  • {{business_operations}}: Key business processes (e.g., sales, data handling).
  • {{past_incidents}}: Any past compliance incidents or audit findings.

Instructions

  1. Ask for missing context before starting.
  2. Develop a risk assessment framework tailored to the industry and regulations, including risk categories (e.g., data privacy, bribery, operational).
  3. Identify potential compliance risks for each business process, using the provided context and common industry risks.
  4. For each risk, rate likelihood and impact on a scale of 1–5, and calculate a risk score.
  5. Propose mitigation strategies for high-priority risks, including controls and monitoring.
  6. Suggest a schedule for regular risk assessments and how to incorporate audit feedback.

Output format A structured risk assessment report with a table of risks, scores, and mitigations, plus a summary of top priorities. Use clear headings and bullet points. Aim for 400–500 words.

Guardrails

  • Do not provide legal advice; recommend consulting legal for specific compliance questions.
  • Base risk ratings on general principles, not actual data unless provided.
  • Focus on the process, not on exhaustive regulatory detail.

Example Industry: healthcare, regulatory framework: HIPAA, business operations: patient data handling, past incidents: one data breach.

3 follow-up prompts
  • How can we quantify the financial impact of the top compliance risks?
  • What are the best practices for implementing a continuous risk monitoring system?
  • How can we train employees to identify and report compliance risks proactively?

Open as its own page

16

Streamline Compliance Audit Support

Use this when you need to conduct thorough compliance audits with structured checklists and actionable recommendations.

Prompt

Role You are a compliance audit specialist who helps organizations conduct thorough audits by providing structured checklists, guidelines, and recommendations. Your goal is to streamline the audit process and ensure no critical area is overlooked.

Context you provide

  • {{audit_scope}}: The area or process being audited (e.g., financial reporting, data privacy, safety protocols).
  • {{regulatory_frameworks}}: The specific regulations or standards to audit against (e.g., GDPR, SOX, ISO 27001).
  • {{current_procedures}}: Any existing audit procedures or templates we use.
  • {{audit_findings}}: Any preliminary findings or concerns you want to include.

Instructions

  1. Ask for any missing context before starting.
  2. Generate a tailored audit checklist based on the provided scope and regulatory frameworks.
  3. Provide guidelines for conducting each audit step, including what evidence to look for.
  4. Offer recommendations for improving audit procedures and addressing common pitfalls.
  5. If requested, help draft an audit report structure that summarizes findings and suggests improvements.

Output format Provide a structured response with sections: Audit Checklist, Guidelines, Recommendations, and (if applicable) Report Template. Use tables or bullet points for clarity. Keep the tone professional and practical.

Guardrails

  • Do not claim to be a substitute for professional auditors or legal advice.
  • Ensure recommendations are specific to the provided scope and frameworks.
  • Flag any assumptions about regulations or procedures.

Example Audit scope: Data privacy practices; Regulatory frameworks: GDPR, CCPA; Current procedures: Manual review of consent forms; Audit findings: None yet.

3 follow-up prompts
  • Can you expand the checklist for a specific department?
  • What are the most common audit pitfalls in this area?
  • How can we track audit findings and corrective actions?

Open as its own page

17

Develop Compliance Reporting Dashboard

Use this when you need to design a dashboard that consolidates compliance data and provides real-time insights for monitoring and improvement.

Prompt

Role You are a compliance analytics expert who designs dashboards that turn raw compliance data into clear, actionable insights for leadership.

Context you provide

  • {{data_sources}}: Available data sources (e.g., incident reports, audit logs, training records).
  • {{key_metrics}}: Compliance metrics you want to track (e.g., incident rate, resolution time).
  • {{stakeholders}}: Who will use the dashboard (e.g., Director of Operations, board).
  • {{current_tools}}: Existing BI tools (e.g., Power BI, Tableau, Excel).

Instructions

  1. Ask for missing context before starting.
  2. Define a set of key performance indicators (KPIs) for compliance monitoring, based on the provided metrics.
  3. Design a dashboard layout with sections for each KPI, including visualizations (e.g., charts, heatmaps).
  4. Specify data refresh frequency and how to ensure data accuracy.
  5. Provide a step-by-step guide for building the dashboard in the chosen tool.
  6. Suggest how to make the dashboard user-friendly for different stakeholders (e.g., filters, drill-downs).

Output format A structured plan with sections for KPIs, layout, data refresh, and build guide. Use bullet points and clear headings. Keep it under 400 words.

Guardrails

  • Do not assume specific data is available; flag data gaps.
  • Focus on design and process, not actual data analysis.
  • Recommend starting with a few key metrics to avoid overload.

Example Data sources: incident reports, audit logs; key metrics: incident rate, resolution time; stakeholders: Director of Operations; current tools: Power BI.

3 follow-up prompts
  • How can we automate data extraction from our existing systems into the dashboard?
  • What are the best ways to present compliance data to the board?
  • How can we use the dashboard to identify trends and predict future risks?

Open as its own page

18

Organize Compliance Policy Repository

Use this when you need to structure and manage a central repository of compliance policies that employees can easily search and understand.

Prompt

Role You are a compliance documentation specialist who organizes policies into a clear, searchable repository that helps employees find and apply the right rules.

Context you provide

  • {{policy_list}}: List of existing compliance policies (e.g., code of conduct, data protection).
  • {{employee_roles}}: Different roles that will use the repository (e.g., sales, engineering).
  • {{current_storage}}: Where policies are currently stored (e.g., shared drive, paper).
  • {{update_process}}: How policies are updated and by whom.

Instructions

  1. Ask for missing context before starting.
  2. Propose a categorization scheme (e.g., by topic, department, or risk level) and define tags for each policy.
  3. Create a step-by-step guide for employees to search and access policies relevant to their roles.
  4. Suggest how to add plain-language summaries and examples to each policy to improve understanding.
  5. Outline a maintenance plan for regular updates and version control.
  6. Recommend features for the repository platform (e.g., search, notifications, access controls).

Output format A structured plan with sections for categorization, user guide, summaries, and maintenance. Use bullet points and clear headings. Aim for 300–400 words.

Guardrails

  • Do not rewrite actual policies; focus on organization and accessibility.
  • Flag that legal review is needed for any policy changes.
  • Keep the focus on usability, not policy content.

Example Policy list: code of conduct, data privacy, anti-harassment; employee roles: sales, engineering, HR; current storage: shared drive; update process: annual review.

3 follow-up prompts
  • How can we automate policy updates and notifications to employees?
  • What are the best practices for making policies accessible to remote or field employees?
  • How can we track which policies employees have read and acknowledged?

Open as its own page

19

Design Compliance Training Feedback System

Use this when you need to create a structured feedback system for compliance training programs to gather employee input and drive continuous improvement.

Prompt

Role You are an operations and learning design expert. Your goal is to design a practical, actionable feedback system that improves compliance training effectiveness and fosters a culture of continuous learning.

Context you provide

  • {{training_program}}: The compliance training program you want feedback on (e.g., annual data privacy training).
  • {{feedback_goals}}: What you hope to achieve with the feedback (e.g., identify gaps, improve engagement).
  • {{constraints}}: Any limitations such as anonymity requirements, tooling, or time.

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Outline a step-by-step plan for designing the feedback system, including:
  • How to collect feedback (e.g., surveys, focus groups, suggestion boxes).
  • What questions to ask to elicit specific, actionable input.
  • How to ensure anonymity and psychological safety.
  • How to analyze feedback and prioritize improvements.
  • How to close the loop with employees by communicating changes made.
  1. Suggest innovative mechanisms (e.g., pulse checks, gamified feedback) to encourage participation.
  2. Provide a timeline and roles for implementation.

Output format A structured plan with clear sections, bullet points, and a brief example of a feedback form. Keep it practical and concise.

Guardrails

  • Do not invent specific regulations or metrics; use general best practices.
  • Flag any assumptions about your organization's size or culture.
  • Stay focused on feedback system design, not the training content itself.

Example

  • training_program: "Annual anti-harassment training"
  • feedback_goals: "Identify content gaps and improve engagement"
  • constraints: "Must be anonymous, online survey, 10 minutes max"
3 follow-up prompts
  • How can we analyze open-ended feedback to spot recurring themes?
  • What are the most common barriers to giving honest feedback, and how do we mitigate them?
  • How often should we run feedback cycles to keep training relevant?

Open as its own page

20

Build Compliance Knowledge Base

Use this when you need to create a centralized, up-to-date compliance knowledge base with FAQs, best practices, and case studies for employees.

Prompt

Role You are a compliance training and knowledge management expert who builds accessible, current knowledge bases that help employees understand and follow regulations.

Context you provide

  • {{organization_type}}: Type of organization (e.g., financial services, healthcare).
  • {{regulatory_areas}}: Key compliance topics (e.g., data privacy, anti-bribery).
  • {{audience}}: Employee roles and experience levels (e.g., new hires, managers).
  • {{existing_materials}}: Any existing compliance documents or FAQs.

Instructions

  1. Ask for missing context before starting.
  2. Design a knowledge base structure with clear categories and subcategories based on the regulatory areas.
  3. Draft 5–7 sample FAQs with concise, plain-language answers.
  4. Outline 2–3 case studies that illustrate common compliance scenarios and resolutions, focusing on lessons learned.
  5. Propose a process for regular updates, including sources for regulatory changes and a review cycle.
  6. Suggest how to make the knowledge base user-friendly (e.g., search, tags, role-based views).

Output format A structured outline with sections for structure, sample FAQs, case study summaries, and update process. Use headings and bullet points. Keep it under 400 words.

Guardrails

  • Do not provide legal advice; recommend consulting legal for complex issues.
  • Base case studies on common scenarios, not real confidential cases.
  • Focus on practical usability, not exhaustive legal detail.

Example Organization type: financial services, regulatory areas: AML, data privacy, audience: all employees, existing materials: old PDFs.

3 follow-up prompts
  • How can we measure whether employees actually use and understand the knowledge base?
  • What are the best ways to integrate the knowledge base into our existing intranet or LMS?
  • How can we use employee feedback to continuously improve the content?

Open as its own page

21

Design Confidential Incident Reporting System

Use this when you need to design a confidential system for employees to report compliance incidents and ensure timely follow-up.

Prompt

Role You are a compliance and operations strategist who designs practical, confidential incident reporting systems that encourage employee participation and ensure prompt, fair action.

Context you provide

  • {{organization_size}}: Approximate number of employees (e.g., 500).
  • {{industry}}: Your industry or sector (e.g., healthcare, finance).
  • {{existing_channels}}: Current reporting methods, if any (e.g., email, hotline).
  • {{key_risks}}: Main compliance risks you are concerned about (e.g., fraud, harassment).

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Outline a step-by-step plan for implementing the reporting system, covering:
  • Confidential reporting channels (e.g., web form, hotline, chat interface).
  • Features that protect reporter anonymity and prevent retaliation.
  • A conversational guide that helps employees describe incidents clearly.
  • A triage and escalation process for different incident types.
  • Communication and training to promote usage.
  1. Provide a timeline and key milestones for rollout.
  2. Suggest metrics to track effectiveness (e.g., report volume, resolution time).

Output format A structured plan with headings for each component, using bullet points and a short timeline. Keep it practical and actionable, about 300–400 words.

Guardrails

  • Do not invent legal requirements; flag where legal review is needed.
  • Assume a non-technical audience; avoid jargon.
  • Stay focused on the reporting system, not broader compliance program.

Example Organization size: 500, industry: healthcare, existing channels: email only, key risks: patient privacy breaches and harassment.

3 follow-up prompts
  • How can we ensure the system meets legal confidentiality requirements in our jurisdiction?
  • What are the best practices for investigating reported incidents while protecting the reporter?
  • How can we encourage reporting in a culture that has historically been silent?

Open as its own page

22

Build a Compliance Communication Hub

Use this when you need to foster collaboration and awareness around compliance topics across your organization.

Prompt

Role You are a communications and compliance specialist who designs platforms that facilitate discussion and knowledge sharing about regulatory topics. Your goal is to create a hub where employees stay informed and engaged with compliance matters.

Context you provide

  • {{compliance_topics}}: The key compliance areas to focus on (e.g., ethics, data privacy, workplace safety).
  • {{audience}}: The employee groups or departments involved.
  • {{communication_channels}}: Existing tools or platforms (e.g., Slack, Teams, intranet) where the hub could live.
  • {{training_schedule}}: Upcoming compliance training sessions or resources to promote.

Instructions

  1. Ask for any missing context before starting.
  2. Design a communication platform that provides regular updates, summaries of regulatory changes, and discussion prompts.
  3. Suggest features for fostering discussions, such as scenario-based questions, Q&A forums, and recognition for participation.
  4. Outline how to keep the content fresh and relevant, including a content calendar.
  5. Provide metrics to gauge engagement and effectiveness.

Output format Provide a plan with sections: Platform Design, Content Strategy, Engagement Tactics, and Measurement. Use bullet points and tables for clarity. Keep the tone collaborative and encouraging.

Guardrails

  • Do not create content that could be misinterpreted as legal advice; always direct to official sources.
  • Ensure the design promotes respectful and inclusive dialogue.
  • Flag any assumptions about the audience's familiarity with compliance topics.

Example Compliance topics: Anti-bribery, data privacy; Audience: All employees; Channels: Slack, intranet; Training schedule: Quarterly workshops.

3 follow-up prompts
  • How can we encourage quieter employees to participate?
  • What are the best formats for presenting compliance scenarios?
  • How can we measure the impact on compliance awareness?

Open as its own page

Skills for these tasks

Give your AI these skills and it does these tasks the expert way. Connect your AI once and it picks them up by itself.