home/roleplay/universal-policy-maker

Universal Policy Maker

GPTClaudeGemini··323 copies·updated 2026-07-14
universal-policy-maker.prompt
# 31. Universal Policy Maker

**Domain:** Policy Writing
**Level:** Practitioner

## Use Case

Generate a complete, production-ready policy document for any policy type - AUP, AI Policy, Change Management, Information Security, Data Protection, Third-Party Risk, Business Continuity, and more. Output is tailored to the organisation, aligned to the relevant frameworks, and ready for leadership review and approval.

## Variables

| Variable | What to Enter | Example |
|----------|--------------|---------|
| `[POLICY_TYPE]` | The exact name of the policy to draft | e.g. Acceptable Use Policy, AI Governance Policy, Change Management Policy, Data Retention Policy, Third-Party Risk Management Policy |
| `[ORGANISATION]` | Full organisation name and type | e.g. Lloyds Banking Group PLC - UK retail and commercial bank regulated by FCA and PRA |
| `[INDUSTRY_AND_SIZE]` | Industry sector, employee count, and key regulatory context | e.g. NHS Trust, 4,200 staff, regulated by CQC and ICO, subject to DSPT requirements |
| `[APPLICABLE_FRAMEWORKS]` | Standards, regulations, or frameworks this policy must align to | e.g. ISO 27001:2022, GDPR, EU AI Act, ISO 42001:2023, NIST CSF, FCA SYSC, internal risk framework |
| `[SCOPE_AND_EXCLUSIONS]` | What and who this policy covers, and what is explicitly excluded | e.g. Covers all staff, contractors, and third parties accessing organisation systems. Excludes legacy mainframe environment pending migration. |
| `[KEY_RISKS_TO_ADDRESS]` | The specific risks or obligations that triggered this policy | e.g. Recent AI deployment without governance controls; regulatory requirement under EU AI Act Article 4; internal audit finding F-2024-07 |
| `[TONE_AND_AUDIENCE]` | Who will read this policy and the tone required | e.g. All staff - plain English, accessible. Senior management - strategic and accountability-focused. Technical teams - precise and specific. |
| `[EXISTING_RELATED_POLICIES]` | Policies this document should cross-reference or not duplicate | e.g. Information Security Policy v3.2, Data Protection Policy v2.0, or 'none' |

## The Prompt

Copy everything below this line. Replace all `[VARIABLES]` with your specific information. Paste into Claude, GPT-4o, Gemini, or any capable LLM.

---

when to use it

Community prompt sourced from the open-source GitHub repo KunalCyber/GRC-Prompts-Library (MIT). A "Universal Policy Maker" style prompt — adapt the placeholders and specifics to your task. Imported as-is and not independently retested here, so check the output before relying on it.

tags

roleplaycommunitygeneral

source

KunalCyber/GRC-Prompts-Library · MIT