Skip to content
SecuritySushegaad/Claude-Skills-Governance-Risk-and-Compliance

36 compliance frameworks as individual .skill packages, with a published eval

Our takeMost compliance prompt packs only claim expert level; this one ships numbers — 180 test cases, 902 verifiable assertions, graded by independent agents, 89% with the skill against a 57% baseline. That gap says general models are shaky on fine-grained control mapping, which is the daily work of compliance. It carries its own disclaimer: not a substitute for licensed legal or audit opinion. Its value is making the first draft complete and correct, and a human still signs.

911 stars, MIT, v2.0.0, updated monthly. Information security covers ISO 27001, SOC 2, FedRAMP, NIST CSF, NIST SP 800-53 and CIS Controls v8; privacy covers GDPR, ISO 27701, CCPA/CPRA, LGPD and DPDPA; AI governance covers ISO 42001, NIST AI RMF and the EU AI Act; sector and country law covers HIPAA, PCI DSS, DORA, SWIFT CSP, TISAX, SOX ITGC, EU NIS2/CRA/CSRD and ITAR/EAR.

Claude Code
/plugin marketplace add Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
HTMLSushegaad911
36 compliance frameworks as individual .skill packages, with a published eval