compliance-check

作者: facebook

檢查 Meta 應用程式的合規狀態——呈現待處理的必要動作、有效違規事項,以及附帶補救指引的建議。用於稽核⋯

npx skills add https://github.com/facebook/agentic-tools --skill compliance-check

Compliance Check

Audit the compliance posture of a Meta app and provide remediation guidance.

Workflow

  1. Start tracking. Before any other work, call devtools_skill_invocation with action start and skill_name compliance-check. Pass skill_name compliance-check on every devtools_* tool call in the following steps.

  2. Identify the app. Ask the user for the app name or ID. If they give a name (or aren't sure of the ID), call devtools_app_list (action list) and resolve it to an app_id — match the name case-insensitively. If several apps match or it's ambiguous, show the candidates (name, ID, viewer role) and ask the user to pick. If they give a numeric ID, use it directly.

  3. Collect data in parallel:

    • devtools_compliance with action status — full compliance status
    • devtools_app with action basic_settings — app context (name, category, status)
    • devtools_app with action data_protection_officer — DPO contact info
  4. Analyze compliance status. Categorize findings by severity:

    Violations (critical — may result in app restrictions or removal)

    • What the violation is
    • When it was flagged
    • What action is required
    • Deadline for resolution

    Required Actions (high — must be completed by deadline)

    • Description of the required action
    • Deadline
    • Steps to complete

    Recommendations (low — suggested improvements)

    • What's recommended and why
    • How to implement
  5. Produce the compliance report:

    Report Format

    App Overview

    • App name, ID, category

    Compliance Score

    • Overall status: COMPLIANT / ACTION REQUIRED / VIOLATION
    • Count of items by severity

    Violations (if any)

    • Each violation with description, deadline, and remediation steps

    Required Actions (if any)

    • Each action with description, deadline, and steps to complete

    Recommendations (if any)

    • Each recommendation with description and implementation guidance

    Data Protection Officer

    • Current DPO contact info
    • Flag if DPO info is missing or incomplete

    Action Plan

    • Prioritized list: violations first, then required actions by deadline, then recommendations
    • For each item, provide specific steps the developer can take
  6. Suggest follow-ups:

    • If violations exist: emphasize urgency and potential consequences
    • If DPO info is missing: explain why it matters and how to set it up
    • If app review is blocked by compliance: suggest /app-review-prep after resolving issues
  7. End tracking. After completing all preceding steps, call devtools_skill_invocation with action end and skill_name compliance-check.

Tips

  • Compliance deadlines are hard deadlines — missing them can result in app restrictions.
  • Some compliance items require changes in the Meta Developer Dashboard that can't be done via API. Flag these clearly as "manual action required in Developer Dashboard."
  • If the app is fully compliant, keep the report brief and congratulatory.

來自 facebook 的更多技能

gc-safe-coding
facebook
完整解釋與理由請參閱 doc/GCSafeCoding.md。
app-review-prep
facebook
準備將 Meta 應用程式提交至 App Review——檢查目前狀態、未完成的要求、已授予的權限及提交紀錄。請在提交應用程式前使用……
api-health
facebook
監控 Meta 應用程式的 API 健康狀態 — 檢查速率限制、呼叫量與 API 棄用情況。用於診斷節流問題、規劃容量,或為 API 版本…做好準備。
debug-webhooks
facebook
排解 Meta 應用程式的 webhook 問題——檢查作用中的訂閱、找出設定錯誤,並傳送測試負載以驗證傳遞。當……時使用。
api-integration
facebook
引導開發者從零開始設定 Meta API 整合 — 找出正確的 API、取得設定指南、驗證需求、…
webhook-setup
facebook
端到端設定 Meta 應用程式的 Webhook — 探索可用主題、訂閱欄位,並透過測試負載驗證。在為… 設定 Webhook 時使用。
test-ui
facebook
使用 iwsdk CLI 針對 poke 範例測試 UI 系統(PanelUI、ScreenSpace)。
flags
facebook
檢查並比較 React 發佈通道中的功能旗標狀態。檢視所有通道(www、www-modern、canary、next、experimental、rn 變體)的旗標,或使用 --diff 比較特定通道。輸出格式包括預設表格檢視、CSV 匯出及清理狀態分組。旗標狀態以符號表示:啟用(✅)、停用(❌)、變體測試(🧪)、僅分析(📊)。常見陷阱:__VARIANT__ 旗標在 www 上會以兩種狀態進行測試;使用 --diff 可找出有意義的差異。