Compliance Review

Browse Compliance Review agent skills in Security and compare related workflows, tools, and use cases.

70 skills
A
skill-comply

by affaan-m

skill-comply is a compliance-testing skill that checks whether an agent follows a skill, rule, or agent definition in real runs. It generates specs from markdown, runs three prompt strictness levels, classifies tool-call timelines, and reports compliance rates with evidence. Useful for skill-comply for Compliance Review.

Compliance Review
Favorites 0GitHub 156.3k
A
security-review

by affaan-m

Use the security-review skill to review auth, user input, secrets, APIs, payments, uploads, and other sensitive flows. It provides a practical security-review guide with clear pass/fail checks, risky-pattern examples, and a focused process for catching common issues before release.

Security Audit
Favorites 0GitHub 156.3k
A
quality-nonconformance

by affaan-m

quality-nonconformance is a regulated-manufacturing skill for NCR intake, root cause analysis, CAPA, SPC interpretation, and final disposition. Use it for Compliance Review, supplier quality issues, and evidence-based decisions where traceability, risk, and audit-ready judgment matter.

Compliance Review
Favorites 0GitHub 156.2k
A
perl-security

by affaan-m

perl-security helps you review Perl code for safer input handling, taint mode, shell execution, DBI placeholders, and web security issues like XSS, SQLi, and CSRF. Use this perl-security skill for Security Audit work, remediation planning, and secure development when user-controlled data reaches sensitive sinks.

Security Audit
Favorites 0GitHub 156.2k
A
laravel-security

by affaan-m

The laravel-security skill is a practical Laravel security checklist for authn/authz, validation, CSRF, mass assignment, file uploads, secrets, rate limiting, and secure deployment. Use it for audits, feature reviews, and hardening work in Laravel apps.

Security Audit
Favorites 0GitHub 156.2k
A
hipaa-compliance

by affaan-m

hipaa-compliance is the HIPAA-specific entrypoint for healthcare privacy and security work. Use the hipaa-compliance skill when a task is explicitly about PHI, covered entities, BAAs, breach posture, or whether a workflow creates HIPAA exposure. It is a thin overlay for fast compliance triage and guidance.

Compliance Review
Favorites 0GitHub 156.2k
A
healthcare-phi-compliance

by affaan-m

healthcare-phi-compliance helps review healthcare apps for PHI/PII risk across data models, APIs, logs, and access paths. Use it to check data classification, access control, encryption, audit trails, and common leak vectors for HIPAA, DISHA, GDPR, and related security audit needs.

Security Audit
Favorites 0GitHub 156.2k
A
django-security

by affaan-m

django-security is a practical guide for hardening Django apps with authentication, authorization, CSRF, XSS, SQL injection prevention, secure cookies, and production settings. It helps developers and reviewers run a focused Security Audit, quickly spot risky config, and apply concrete fixes before deployment.

Security Audit
Favorites 0GitHub 156.1k
A
customs-trade-compliance

by affaan-m

customs-trade-compliance is a trade compliance skill for customs documentation, HS/HTS classification, duty planning, restricted party screening, and Compliance Review. It helps users turn shipment facts into defensible import/export decisions with less guesswork than a generic prompt.

Compliance Review
Favorites 0GitHub 156.1k
G
cso

by garrytan

cso is a Chief Security Officer–style security audit skill for agents. It helps review codebases and workflows for secrets exposure, dependency and supply-chain risk, CI/CD security, and LLM/AI security using OWASP Top 10 and STRIDE. Use cso for structured Security Audit reviews with confidence gates, active verification, and trend tracking.

Security Audit
Favorites 0GitHub 91.8k
W
accessibility-compliance

by wshobson

The accessibility-compliance skill helps teams audit and improve web or mobile UI with practical WCAG 2.2, ARIA, keyboard access, screen reader, and mobile accessibility guidance. Best for UX audits, component fixes, and implementation-ready recommendations.

UX Audit
Favorites 0GitHub 32.6k
W
security-requirement-extraction

by wshobson

security-requirement-extraction turns threat models and business context into testable security requirements, user stories, acceptance criteria, and backlog-ready outputs for Requirements Planning.

Requirements Planning
Favorites 0GitHub 32.6k
W
pci-compliance

by wshobson

Use the pci-compliance skill to guide PCI DSS architecture reviews, scope reduction, gap analysis, and payment data handling decisions. Best for teams designing payment flows, preparing for assessments, or reviewing controls before a compliance review.

Compliance Review
Favorites 0GitHub 32.6k
W
k8s-security-policies

by wshobson

k8s-security-policies helps teams draft Kubernetes NetworkPolicy, Pod Security Standards labels, and RBAC patterns using repo-backed templates and references for hardening and audit-ready rollout planning.

Security Audit
Favorites 0GitHub 32.6k
W
gdpr-data-handling

by wshobson

The gdpr-data-handling skill helps teams turn GDPR requirements into practical review guidance for consent, lawful basis, data subject rights, retention, and privacy-by-design decisions.

Compliance Review
Favorites 0GitHub 32.5k
W
wcag-audit-patterns

by wshobson

wcag-audit-patterns is a structured WCAG 2.2 audit skill for accessibility reviews. Use it to combine automated findings with manual checks, prioritize issues by severity and conformance level, and generate actionable remediation guidance for pages, flows, and components.

UX Audit
Favorites 0GitHub 32.5k
G
agent-governance

by github

agent-governance is a documentation-first skill for designing AI agent guardrails, policy checks, trust rules, tool restrictions, and audit logging for tool-using and multi-agent systems.

Agent Standards
Favorites 0GitHub 27.8k
G
gws-modelarmor

by googleworkspace

gws-modelarmor helps you work with Google Model Armor in the googleworkspace/cli ecosystem. Use it to sanitize prompts, sanitize model responses, and create templates with less guesswork than a generic prompt. It is designed for repeatable, policy-aware usage and Security Audit workflows.

Security Audit
Favorites 0GitHub 25.5k
A
qms-audit-expert

by alirezarezvani

qms-audit-expert is an ISO 13485 internal audit skill for medical device QMS teams. It supports risk-based audit planning, clause checklists, nonconformity classification, CAPA verification, external audit prep, and schedule optimization using included references and a Python tool.

Quality Management
Favorites 0GitHub 22.2k
A
mdr-745-specialist

by alirezarezvani

mdr-745-specialist is an EU MDR 2017/745 compliance skill for device classification, Annex II/III technical documentation, clinical evidence, PMS/PMCF/PSUR planning, and notified body readiness. It includes MDR reference guides and a Python gap analyzer for structured compliance review.

Compliance Review
Favorites 0GitHub 22.2k
A
information-security-manager-iso27001

by alirezarezvani

The information-security-manager-iso27001 skill helps AI agents perform ISO 27001:2022 ISMS work for HealthTech, MedTech, and regulated software teams. Use it for risk assessment, Annex A control mapping, compliance review, evidence checklists, incident response planning, and audit gap analysis with included references and scripts.

Compliance Review
Favorites 0GitHub 22.2k
A
gdpr-dsgvo-expert

by alirezarezvani

gdpr-dsgvo-expert helps agents run GDPR/DSGVO Compliance Review with code scans, DPIA drafting, audit guidance, BDSG references, and DSAR deadline tracking. Use it to surface privacy risks and prepare evidence for DPO or legal review.

Compliance Review
Favorites 0GitHub 22.2k
A
senior-secops

by alirezarezvani

senior-secops is a Claude skill for application security reviews, vulnerability management, CVE triage, dependency risk, OWASP checks, and compliance guidance. It includes references for security standards and SOC 2, PCI-DSS, HIPAA, GDPR, plus scripts for code scanning, dependency assessment, and compliance checks.

Vulnerability Management
Favorites 0GitHub 22.1k
A
iso27001-audit-prep

by alirezarezvani

iso27001-audit-prep is a focused ISO 27001 ISMS audit readiness skill. It uses six forcing questions to pressure-test scope, risk register freshness, Annex A linkage, management review, corrective actions, and sample-ready evidence before internal, certification, or surveillance audits.

Compliance Review
Favorites 0GitHub 22.1k