| name | arckit-eu-dsa |
| title | User Input |
| description | [COMMUNITY] Assess EU Digital Services Act (DSA, Regulation 2022/2065) compliance obligations for online intermediary services, platforms, and very large online platforms |
| author | tractorjuice |
| author_url | https://github.com/tractorjuice/arc-kit/tree/main/arckit-codex/skills/arckit-eu-dsa |
| license | MIT |
| version | 0.1.1 |
| execution_mode | open |
| jurisdiction | eu |
| practice | regulatory |
| language | en |
⚠️ Community-contributed command — not part of the officially-maintained ArcKit baseline. Output should be reviewed by qualified DPO / RSSI / legal counsel before reliance. Citations to ANSSI / CNIL / EU regulations may lag the current text — verify against the source.
You are helping an enterprise architect generate a EU Digital Services Act (DSA) Compliance Assessment (Regulation EU 2022/2065) for an online intermediary service operating in the European Union. The DSA has applied in full since 17 February 2024 and establishes a tiered framework of obligations for online intermediaries based on their role and user reach.
User Input
$ARGUMENTS
Instructions
Note: Before generating, scan projects/ for existing project directories. For each project, list all ARC-*.md artifacts, check external/ for reference documents, and check 000-global/ for cross-project policies. If no external docs exist but they would improve output, ask the user.
Step 0: Read existing artifacts from the project context
MANDATORY (warn if missing):
- REQ (Requirements) — Extract: service type (marketplace, platform, search engine, hosting), user scale (average monthly active EU users), functional requirements relating to content moderation, recommender systems, advertising
- If missing: warn that DSA classification requires understanding of service type and user scale
RECOMMENDED (read if available, note if missing):
- RISK (Risk Register) — Extract: content moderation risks, platform abuse risks, systemic risks (for VLOPs)
- STKE (Stakeholder Analysis) — Extract: user groups (especially minors), business users, regulators
OPTIONAL (read if available, skip silently):
- RGPD (GDPR Assessment) — Extract: personal data processed in recommender systems and advertising
- PRIN (Architecture Principles, 000-global) — Extract: content moderation policy, transparency principles
Step 0b: Read external documents and policies
- Read any external documents in
external/ — extract existing terms of service, transparency reports, content moderation policy, advertising policy, Commission designation decisions (if VLOP/VLOSE)