70 AI Prompts for Compliance

The best Compliance prompts in the Legal library. Tested on ChatGPT, Claude, Gemini and every major model.

Browse the prompts

## Role
You are a Fair Housing compliance attorney and property management consultant specializing in federal, state, and local housing discrimination law. You advise landlords on defensible tenant screening, communication protocols, and documentation systems that prevent discrimination claims.

## Task
Create comprehensive Fair Housing compliance guidelines tailored to the user's rental operation. Cover:

- **Consistent treatment standards**: predetermined qualification criteria, standardized application questions, uniform screening procedures applied to every prospect
- **Anti-discrimination communication**: prohibited topics (familial status, national origin, disability, etc.), safe phrasing alternatives, and compliant responses to common tenant inquiries
- **Steering prevention**: protocols ensuring prospects are never directed toward or away from units based on protected characteris

Fair Housing Compliance Guidelines Prompt

Generates tailored Fair Housing compliance guidelines covering tenant screening standards, anti-discrimination communication protocols, record-keeping systems, and advertising compliance. Runs on ChatGPT, Claude, Gemini, and Grok.

42
## Role
You are a cybersecurity architect specializing in e-commerce platforms. You identify vulnerabilities in hosting environments, integrations, and compliance gaps before attackers exploit them. Your recommendations balance regulatory requirements with practical implementation constraints.

## Task
Generate a comprehensive, prioritized security assessment and roadmap tailored to the user's e-commerce environment. Analyze the hosting platform's capabilities and limitations, identify region-specific compliance obligations, evaluate integration-layer risks, and recommend high-impact, cost-effective measures.

Before responding, map: hosting environment constraints → applicable regulatory frameworks → integration attack surfaces → threat prioritization by likelihood and business impact.

## Context
The user operates an e-commerce platform handling sensitive customer data and payment info

E-Commerce Security Best Practices Recommendation

Generates a prioritized security assessment and implementation roadmap tailored to your e-commerce platform, hosting environment, and regional compliance requirements. Runs on ChatGPT, Claude, Gemini, and Grok.

39

Regulatory Compliance Roadmap Generator

Generates a multi-jurisdictional regulatory compliance report identifying federal, state, and local legal obligations for any business. Runs on ChatGPT, Claude, Gemini, and Grok to deliver structured analysis with citations, enforcement details, and risk prioritization.

26

Corrective Action Plan Generator for Regulatory Findings

Generates a structured, regulatory-grade Corrective Action Plan (CAP) that converts enforcement findings into documented remediation strategies. Designed for ChatGPT, Claude, and Gemini to address FDA, SEC, DOJ, FTC, OSHA, EPA, and international regulatory requirements.

26

Compliance Violation Report Generator

Generates audit-ready compliance violation reports that analyze incidents through the COSO framework, detail control deficiencies, and provide remediation plans. Runs on ChatGPT, Claude, Gemini, and Grok.

24
## Role

You are a regulatory compliance attorney specializing in policy gap analysis across enterprise organizations and government regulatory bodies. You identify material compliance gaps—misalignments between policy language and regulatory requirements that create enforcement risk.

## Task

Conduct a comprehensive policy gap analysis that identifies deficiencies, assesses regulatory exposure, and provides a prioritized remediation roadmap.

## Context

The organization suspects critical compliance gaps exist but internal teams lack the distance to identify blind spots. External audits have provided only surface-level feedback. Overlooked gaps could result in significant penalties, consent decrees, or criminal liability. Your analysis must deliver surgical precision: material gaps with clear regulatory justification and practical remediation paths.

## Analysis Framework

Deliver the 

Regulatory Policy Gap Analysis Prompt

Generates a line-by-line compliance gap analysis that maps policy deficiencies to specific regulatory requirements, quantifies enforcement risk, and delivers a prioritized remediation roadmap. Runs on ChatGPT, Claude, Gemini, and Grok.

24
## Role

You are a compliance forensics specialist with deep expertise in Fair Labor Standards Act (FLSA) enforcement. Your background includes prosecuting wage-and-hour violations and remediating payroll compliance failures across organizations facing regulatory scrutiny.

## Task

Conduct a comprehensive FLSA compliance analysis to identify violations, quantify exposure, and develop an actionable remediation strategy.

Assess:
1. Current payroll practices against FLSA requirements
2. Classification errors and wage/hour violations
3. Liability exposure by risk severity
4. Remediation steps that satisfy regulators while minimizing penalties

## Context

{{compliance-situation}}

Analyze the provided documentation against FLSA standards:

**Classification Analysis** – Review exempt/non-exempt determinations against duties tests, salary basis requirements, and salary level thresholds. Flag

Analyze Payroll Compliance Under FLSA

Generates a structured FLSA compliance report that identifies wage-and-hour violations, quantifies liability exposure, and provides an actionable remediation roadmap. Runs on ChatGPT, Claude, Gemini, and Grok.

23

Corporate Policy Drafting Mistakes Analysis Prompt

Generates a detailed analysis of 7 common internal policy drafting errors, their root causes, real-world consequences, and prevention strategies. Runs on ChatGPT, Claude, Gemini, and Grok.

23

Employment Law Compliance Framework Generator

Generates a legally defensible hiring and termination framework that protects against litigation and ensures compliance with federal and state employment laws. Runs on ChatGPT, Claude, Gemini, and Grok.

23
## Role

You are a regulatory compliance attorney with deep experience architecting enforceable compliance frameworks for organizations facing high-stakes regulatory scrutiny. You translate complex legal requirements into practical, operational policies that employees follow, auditors respect, and regulators accept.

## Task

Draft a comprehensive compliance policy document that addresses the user's regulatory obligations. The policy must be specific enough to enforce, practical enough that employees won't circumvent it, and robust enough to withstand regulatory review.

## Context

The organization faces critical compliance gaps in a regulated environment where violations carry severe consequences: major fines, executive liability, operational shutdowns, and reputational damage. Previous compliance efforts failed because they were either too vague or so rigid that employees created work

Regulatory Compliance Policy Generator

Generates enforceable compliance policy documents that translate complex regulatory requirements into operational workflows. Runs on ChatGPT, Claude, and Gemini to produce complete policy frameworks with monitoring, enforcement, and implementation roadmaps.

23
## Role

Compliance management specialist with expertise in ISO 37301 standards, regulatory validation, and audit-ready documentation.

## Task

Design comprehensive compliance certification templates that meet ISO 37301 requirements and ensure audit readiness. Create structured frameworks with clear documentation standards that capture evidence-based assurance for regulatory scrutiny.

## Context

The templates will operate in environments where regulatory scrutiny is intensifying, compliance failures trigger significant legal consequences, and audit teams require complete, organized documentation.

**Compliance Scope:**  
{{compliance-scope}}

**Organizational Context:**  
{{organizational-context}}

## Output

Provide template frameworks that include:

**1. Certification Record Templates**
- Policy alignment documentation sections
- Risk assessment documentation fields
- Control imple

ISO 37301 Compliance Certification Template Builder

Generates structured compliance certification templates that meet ISO 37301 standards, including policy alignment, risk assessment fields, verification checklists, and audit sign-off protocols. Runs on ChatGPT, Claude, Gemini, and Grok.

22

Internal Control Assessment Using COSO Framework

Generates a comprehensive internal control evaluation across all five COSO components, identifying gaps, quantifying risks, and prioritizing remediation actions. Runs on ChatGPT, Claude, Gemini, and Grok.

22

ISO Compliance Violation Analysis Prompt

Generates a comprehensive compliance assessment report identifying policy violations, systemic risks, and corrective actions using ISO 37301 standards. Runs on ChatGPT, Claude, Gemini, and Grok to produce structured risk matrices, root cause analyses, and monitoring protocols.

22

Compliance Risk Warning Sign Analysis Prompt

Generates a structured assessment of the five most critical early warning signs that indicate an organization is drifting toward non-compliance. Runs on ChatGPT, Claude, Gemini, and Grok to help compliance teams detect systemic vulnerabilities before they escalate into regulatory failures.

22
## Role

You are a compliance forensics specialist with expertise in grant auditing. You analyze grant documentation to identify explicit violations and systemic compliance vulnerabilities before they trigger donor action or audit findings.

## Task

Conduct a comprehensive compliance review that uncovers hidden risks and interpretation conflicts. Work systematically:

1. Parse stated requirements across all compliance domains
2. Identify unstated but implied obligations
3. Map potential interpretation conflicts and vague language
4. Assess systemic vulnerabilities in controls and processes
5. Prioritize risks by likelihood and impact

## Context

Analyze the following grant documentation:

{{grant-documentation}}

Focus your review across these compliance domains:

- **Financial compliance**: Budget alignment, allowable costs, cost-sharing requirements, indirect cost restrictions, finan

Grant Compliance Review Prompt for Audit Forensics

Generates a detailed compliance forensics analysis of grant documentation, identifying explicit violations, systemic vulnerabilities, and interpretation conflicts. Runs on ChatGPT, Claude, Gemini, and Grok to surface hidden risks before audits or donor reviews.

22
## Role

You are an expert cybersecurity consultant and data protection specialist with deep experience in enterprise security protocols and employee lifecycle management.

## Task

Provide comprehensive, actionable data security precautions that organizations must implement when employees leave the company. Analyze critical security touchpoints during employee offboarding, prioritize actions based on risk severity and time sensitivity, and provide specific implementation steps for each precaution.

## Context

Employee departures represent one of the highest-risk periods for data breaches, intellectual property theft, and security vulnerabilities. The departure process requires immediate, systematic action across multiple security domains including access management, device recovery, data audit trails, and legal compliance.

Consider both technical security measures and human factors th

Employee Offboarding Security Risk Analysis Prompt

Generates a prioritized, actionable list of data security precautions for employee departures, covering access revocation, device recovery, audit trails, and compliance requirements. Runs on ChatGPT, Claude, Gemini, and Grok.

22

Cookie Banner Design and Compliance Implementation

Generates a complete cookie banner implementation guide with GDPR and ePrivacy Directive compliance architecture, consent logic, and technical specifications tailored to your platform and regions. Runs on ChatGPT, Claude, Gemini, and Grok.

21

Bureaucracy Navigation and Institutional Accountability

Generates a phased strategic roadmap to address institutional issues through proper channels, evidence documentation, and escalation. Runs on ChatGPT, Claude, Gemini, and Grok.

21
## Role

You are an enterprise risk architect with investigative experience in regulatory failures. You design risk mitigation systems that organizations actually implement—not academic exercises that collect dust. Your approach combines ISO 31000 rigor with operational practicality, focusing on the gap between documented plans and ground-level reality.

## Task

Create a living risk mitigation framework that satisfies regulatory requirements, protects operations, and integrates into existing workflows. Address mounting regulatory scrutiny while acknowledging resource constraints and competing priorities.

## Context

{{organizational-context}}

The organization faces regulatory environment requirements, operational vulnerabilities, past incidents or near-misses, resource constraints (budget, staffing, time), and defined risk appetite thresholds.

Previous risk assessments failed because

Risk Mitigation Plan Builder

Generates a living risk mitigation framework that integrates ISO 31000 principles with practical, operational controls. Runs on ChatGPT, Claude, Gemini, and Grok to produce actionable risk registers, mitigation roadmaps, and monitoring dashboards.

21
## Role
You are an experienced compliance architect who designs enterprise regulatory defense systems based on real-world enforcement patterns and audit outcomes.

## Task
Create a comprehensive, risk-prioritized compliance requirements checklist tailored to the user's regulatory environment. Transform their current approach into a structured, defensible compliance system with clear ownership, documentation standards, and ongoing monitoring.

## Context
Before building the checklist, analyze:
- Which regulations actually apply given their operations
- Where enforcement risk is highest
- Hidden compliance landmines specific to their industry
- Gaps between current state and full compliance

Adapt depth and phase count (5-12 phases) based on regulatory complexity:
- Single-jurisdiction, low-complexity operations: 5-7 phases
- Multi-state or moderate regulation: 7-9 phases
- International o

Build Compliance Checklists

Generates a risk-prioritized, multi-phase compliance requirements checklist tailored to your regulatory environment, industry, and jurisdiction. Runs on ChatGPT, Claude, Gemini, and Grok.

21

Regulatory Compliance Strategy Builder

Generates a structured compliance plan that identifies industry regulations, analyzes requirements, and outlines implementation steps. Runs on ChatGPT, Claude, Gemini, and Grok to produce a markdown table mapping regulation names to actionable compliance measures.

21

Ethical Risk Assessment Prompt for Organizations

Generates a structured ethical risk assessment report that evaluates organizational culture, decision-making processes, and misconduct exposure using the Institute of Business Ethics framework. Runs on ChatGPT, Claude, Gemini, and Grok.

20

Compliance Audit Report Generator for Businesses

Generates a structured regulatory compliance audit report evaluating processes against industry-specific regulations. Runs on ChatGPT, Claude, and Gemini to produce risk assessments and prioritized remediation actions.

20
## Role
You are an open-source compliance specialist with expertise in software licensing, enterprise policy development, and the Linux Foundation's Open Source Compliance framework.

## Task
Draft a comprehensive Open-Source Use Policy that categorizes licenses by copyleft strength, establishes clear approval workflows, and creates robust compliance procedures. The policy must be actionable for both technical teams and legal stakeholders while preventing license compliance failures that can result in legal disputes, forced code disclosure, or product recalls.

## Context
Organization profile and software details:
{{organization-profile}}

Current open-source landscape:
{{oss-inventory}}

## Process
1. Analyze the provided software stack and categorize all OSS licenses by copyleft strength: permissive (MIT, Apache 2.0), weak copyleft (LGPL, MPL), and strong copyleft (GPL, AGPL)
2. Create

Open-Source Software Compliance Policy Generator

Generates a complete open-source use policy that categorizes licenses by copyleft strength, defines approval workflows, and establishes audit procedures for enterprise compliance. Runs on ChatGPT, Claude, Gemini, and Grok.

19

What are AI prompts for Compliance?

AI prompts for Compliance are engineered instructions that already work. These are not one-line questions. Each one fixes the role, the context, the task and the output format before you type a word, so you get a usable result on the first run instead of the fourth.

They cover the work Compliance actually get asked for: research and briefs, copy and content, analysis and reporting, planning, outreach and the admin that eats the day. Open a card to see the full prompt and the output it returns.

Popular on this page right now: "Fair Housing Compliance Guidelines Prompt", "E-Commerce Security Best Practices Recommendation", "Regulatory Compliance Roadmap Generator".

70 on this page, every one scoped to Compliance. Free to read, free to copy.

Why these prompts work for Compliance

A weak prompt costs you the hour you were trying to save: you rewrite it three times, get something generic, then finish the job by hand. An engineered prompt front-loads that thinking once.

In Compliance that means first drafts you can send, analysis you can act on, and the repetitive work handed off, so the time goes into judgement instead of typing.

Every prompt here was written for a real job and tested against the models people actually use. Nothing scraped from a thread.

How to use these prompts

Open a prompt, copy it, and replace the [bracketed] variables with your own product, audience or topic. The structure around them stays as is. That structure is the part doing the work.

Paste it into ChatGPT, Claude, Gemini, Grok or the model you already use. If the output drifts, tighten the context line instead of rewriting the whole prompt.

No account needed to copy one. No setup, no extension, nothing to install.

Which AI tool works best for Compliance prompts?

Text prompts here run well in ChatGPT, Claude, Gemini and Grok; image prompts target Midjourney and Nano Banana. Each card lists the models it was tested with.

Are these AI prompts free to use?

A big part of the library is free: open a prompt, copy it, use it. Premium packs and the Complete AI Bundle unlock the full collection with lifetime updates.

How do I adapt these prompts to my use case?

Start with the [variables]: niche, audience, constraints. If the result still misses, add one example of the output you want. A single good example beats three extra instructions.

For a prompt built from scratch, the Start Now card above opens the custom prompt generator.

Related resources

Get smarter on AI every week

One email a week with the best new prompts, tools, and model updates. Unsubscribe anytime.

Join 100,000+ subscribers. One email a week, real prompts, tools, and model updates. Unsubscribe anytime.