Agent skill

Rfp Response Compliance Review

by pnp in pnp/sharepoint-skills

Reviews a draft proposal against the firm's configurable compliance rules — prohibited language, required disclosures, role and positioning boundaries, and procurement-submission requirements.

MITAuto-check passedBusiness, Finance & HR

Install Rfp Response Compliance Review

skills CLI
$ npx skills add pnp/sharepoint-skills --skill rfp-response-compliance-review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install pnp/sharepoint-skills rfp-response-compliance-review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/pnp/sharepoint-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/Skills/rfp-response-compliance-review/rfp-response-compliance-review .claude/skills/rfp-response-compliance-review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
rfp-response-compliance-review
GitHub stars
133
Token cost
~2.8k tokens
SKILL.md length
1,175 words
Files
1
Skills in repo
52
Repo updated
First seen
Licence
MIT

At a glance

Reviews a draft proposal against the firm's configurable compliance rules — prohibited language, required disclosures, role and positioning boundaries, and procurement-submission requirements.

  • Works in 4 steps: Load the Draft and Prepare for Review → Run Compliance Checks → Log Findings → …
  • Tasks that involve Regulatory compliance
  • SKILL.md covers Firm Profile (REQUIRED — fill…, Purpose, Prerequisites and Compliance Rule Set (EXAMPLE —…, plus 5 more sections
  • Reaches contoso.sharepoint.com

What it does

Rfp Response Compliance Review is an agent skill from pnp/sharepoint-skills. Reviews a draft proposal against the firm's configurable compliance rules — prohibited language, required disclosures, role and positioning boundaries, and procurement-submission requirements. Logs all findings to the Review Findings SharePoint list and annotates the draft document for salesperson and reviewer resolution.

Its SKILL.md is about 2.8k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Business, Finance & HR, covering Regulatory compliance, Proposals and quotes and Cloud office suites. It works with Microsoft SharePoint. The repository describes itself as: Skills for Copilot in SharePoint. The licence is MIT.

When your agent uses it

  • Tasks that involve Regulatory compliance
  • Tasks that involve Proposals and quotes
  • Tasks that involve Cloud office suites

Example prompts

  • “Use the rfp-response-compliance-review skill to review a draft proposal against the firm's configurable compliance rules — prohibited language…”
  • “/rfp-response-compliance-review”

Workflow steps

4 steps, taken from the step headings in SKILL.md.

  1. Load the Draft and Prepare for Review
  2. Run Compliance Checks
  3. Log Findings
  4. Report Back to the User

What it can do on your machine

Read from SKILL.md and the folder at commit 69712d2. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • contoso.sharepoint.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Rfp Response Compliance Review loads about 2.8k tokens when it runs. Until then it costs about 89 tokens; SKILL.md has 1,175 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~89
When it runs · the whole SKILL.md, loaded when a task matches
~2.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from pnp/sharepoint-skills at commit 69712d2, republished under its MIT licence (© pnp). 1,175 words, ~2,785 tokens.

Download SKILL.mdSave it as .claude/skills/rfp-response-compliance-review/SKILL.md (or your agent's skills folder).
name
rfp-response-compliance-review
description
Reviews a draft proposal against the firm's configurable compliance rules — prohibited language, required disclosures, role and positioning boundaries, and procurement-submission requirements. Logs all findings to the Review Findings SharePoint list and annotates the draft document for salesperson and reviewer resolution.

Compliance Review Skill

Firm Profile (REQUIRED — fill in before use)

These values define who your firm is and how it writes. See SETUP.md.

  • FIRM NAME: [FIRM NAME]
  • WHAT THE FIRM DOES: [one sentence]
  • ROLE BOUNDARY: [what the firm will NOT claim to do — leave blank if none]
  • VENDOR STANCE: [vendor-neutral OR resells/implements specific products]
  • SPECIALIZATION: [domains the firm credibly claims]
  • VOICE: [3–5 adjectives]

The rule set in this skill is an EXAMPLE written for an independent advisory firm, included to show the shape of a good rule set. Before use, replace the rule content with your firm's actual compliance rules derived from your Firm Profile and style/compliance guide. Keep the structure (categories, severity, detect/why/fix); change only the content.


Purpose

Before any proposal leaves the firm, it must pass a compliance review covering: language that misrepresents the firm's role or positioning, commitments the firm cannot or should not make, omitted required disclosures, and violations of the procurement's submission standards. This skill runs against the salesperson-reviewed draft (post-Phase 3) and produces a structured findings log. No proposal proceeds to publication until all High severity findings are resolved.

This skill is strictly rule-based. Subjective tone and quality judgments are handled by the Quality & Tone Review skill.


Prerequisites

  • The salesperson-reviewed draft must be in the WIP Collaboration Folder. Do not run against the raw Phase 3 draft — wait for the human review checkpoint.
  • All Phase 3 placeholders must be filled. If placeholders remain, halt and notify the user — placeholders cannot be compliance-checked.
  • The Review Findings SharePoint list must be accessible for logging.
  • The firm's style and compliance guide (source of truth for prohibited terms and required language) should be accessible — confirm its location if uncertain.

Compliance Rule Set (EXAMPLE — customize for your firm)

Severities and the detect/why/fix structure are the template to keep; edit each category's content to reflect your firm's rules.

Rule Category 1 — Role Boundary Violations (Severity: High)

Use only if your Firm Profile defines a ROLE BOUNDARY. Flag any language implying the firm will act outside its stated role.

Example (advisory firm that does not implement):

Pattern to DetectWhy It ViolatesRecommended Fix
"[FIRM NAME] will implement…", "…will deploy…", "…will build…"Implies an implementation role the firm does not hold"[FIRM NAME] will advise on…", "…will design the approach for…"
"[FIRM NAME] will manage [system/platform/tool]…"Implies a managed-services/operations role"[FIRM NAME] will provide oversight during…"
"Our solution includes…", "Our platform…", "Our technology…"Implies the firm is a technology vendor"Our advisory approach…", "Our methodology…"
"We will ensure the system performs…"Implies operational accountability"We will help the client design the performance governance framework…"
Rule Category 2 — Positioning and Disclosure (Severity: High)

Enforces your VENDOR STANCE and positioning that carries contractual or reputational commitment.

Example (vendor-neutral firm):

  • Include at least one explicit statement of vendor-neutral independence (exec summary or approach section).
  • Do not name a specific product as preferred/recommended unless the RFP requires vendor identification — and even then, frame as illustrative, not endorsement.
  • References to open standards or public frameworks are permitted and encouraged.

If your firm does resell or implement specific products, invert this rule: flag language that incorrectly disclaims a product relationship.

Rule Category 3 — Outcome and Commitment Boundaries (Severity: High)

Example:

  • Do not promise specific performance outcomes (accuracy rates, savings %) unless sourced from a client-approved business case or third-party study — and even then, attribute rather than guarantee.
  • Do not claim the firm's work eliminates risk — only that it structures risk identification, mitigation, and oversight.
  • Prefer "designed to make X more transparent, accountable, and controllable" over "ensures X".
Rule Category 4 — Procurement Submission Compliance (Severity: Medium–High)

Check the draft against the Submission Rules captured in the RFP Tracker:

RequirementCheck
Conflict of interest disclosureIf required, confirm a section/appendix exists and is populated
Mandatory certifications / representationsIf listed (insurance, accessibility, data handling), confirm each is addressed
Page and format limitsCross-reference the draft's page count and format against Submission Rules
Confidentiality markingsConfirm "Confidential"/"Proprietary" is marked per RFP instructions, if required
No-contact provisionsFlag language that appears intended to initiate contact outside the procurement process
Show full SKILL.md (499 more words)Show less
Rule Category 5 — Prohibited General Language (Severity: Low–Medium)
Term / PatternReasonAlternative
"World-class", "best-in-class", "leading" (unsubstantiated)Unverifiable superlativesSpecific proof points: "completed X engagements of this type"
"Guaranteed", "ensure", "assure" (as outcome promises)Legal exposure"designed to", "structured to support", "intended to"
"Cutting-edge", "state-of-the-art", "innovative" (without specificity)Vague fillerRemove or describe what is specifically novel
"Turnkey solution"Implies product/implementation deliveryRemove if outside the firm's role
"Partner" (referring to the client)Ambiguous where "partner" has legal meaning"client", "the organization", or the client's formal name
Passive-voice commitments: "…will be delivered" (no actor)Obscures responsibilityRephrase with a clear subject

Step 1 — Load the Draft and Prepare for Review

  1. Retrieve the salesperson-reviewed draft from the WIP Collaboration Folder.
  2. Confirm no placeholders remain (search [PLACEHOLDER). If found, halt and notify user.
  3. Extract the full text, preserving section and paragraph structure.
  4. Retrieve the RFP Tracker and extract all Submission Rules rows — needed for Rule Category 4.

Step 2 — Run Compliance Checks

Process each rule category in order. For every violation, record a finding per Step 3. Apply checks systematically:

  • Full-text search for prohibited terms/patterns (Categories 1, 5)
  • Structural check for required disclosures and sections (Categories 2, 3, 4)
  • Cross-reference check against RFP Submission Rules for format, page count, and required certifications (Category 4)

Step 3 — Log Findings

For each violation/gap, create an item in the Review Findings list:

FieldValue
ProposalProposal name (link to a Proposals tracking item)
Review TypeCompliance
SeverityHigh / Medium / Low
Rule CategoryCategory 1–5
LocationSection name and approximate paragraph or slide number
FindingBrief description of the violation or gap
Verbatim textThe exact text that triggered the finding (quote from the draft)
Recommended fixSpecific suggested correction
StatusOpen (default)
Resolved by(blank — filled by reviewer)

Also add an inline annotation to the draft at each finding's location:

[COMPLIANCE FLAG — Severity: High | Category 1: Role Boundary]
Issue: This sentence implies the firm will implement the system.
Fix: Replace "[FIRM NAME] will deploy" with "[FIRM NAME] will design the governance structure for the deployment of"

Step 4 — Report Back to the User

Provide a summary with:

  • Total findings by severity (High / Medium / Low).
  • All High severity findings — must be resolved before the proposal can proceed.
  • Confirmation that required disclosures (per configured rules) are present or flagged missing.
  • Page count vs. any RFP-specified limit.
  • URL of the annotated draft in SharePoint.
  • URL of the Review Findings list filtered to this proposal.
Example Summary Output
Compliance Review complete.

Findings summary:
  High severity:    3
  Medium severity:  4
  Low severity:     6

HIGH — Must resolve before proceeding:
  1. [Section 3.2] Role boundary violation — "[FIRM NAME] will implement the governance platform"
     → Replace with role-appropriate framing (see Review Findings row 1)
  2. [Section 5.1] Vendor endorsement — a specific product referenced as "recommended platform"
     → Firm cannot recommend a specific vendor; reframe as illustrative or remove
  3. [Executive Summary] Missing positioning disclosure
     → Insert required independence statement (see Rule Category 2)

MEDIUM — Resolve before publication:
  4. [Appendix A] COI declaration section is blank — RFP requires completion
  5. [Section 7] "[FIRM NAME] guarantees readiness within 6 months" — prohibited outcome promise
  6. [Cover page] "Confidential" marking absent — required per RFP Section 2.4
  7. [Section 4] "Turnkey solution" — prohibited product framing

LOW — Recommended improvements:
  [6 findings — see Review Findings list]

Page count: 34 pages | RFP limit: Not specified

Review Findings logged:
   https://contoso.sharepoint.com/sites/Proposals/Lists/ReviewFindings (filtered to this proposal)

Annotated draft:
   https://contoso.sharepoint.com/sites/Proposals/WIP/NorthwindRFP/Northwind_Proposal_DRAFT_ComplianceAnnotated.docx

Next steps: Salesperson resolves all High findings, then resubmits for Quality & Tone review.

Notes & Edge Cases

  • Waivers for High findings: If a salesperson believes a High finding is incorrect or context-dependent, escalate to an authorized approver for sign-off. The skill must not downgrade a High finding without human authorization.
  • Re-running after corrections: On re-run, carry forward unresolved findings and check only the corrected sections for new issues.
  • Buyer-specific rules: The skill applies the firm's general rule set by default. If the RFP comes from a buyer with known additional requirements, confirm with the user whether a buyer-specific addendum to the rule set applies.
  • Confidential source material: If the draft references client-specific data from past proposals (e.g., a named prior client that has not authorized public reference), flag it as a High finding regardless of other context.

© pnp, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in Skills/rfp-response-compliance-review/rfp-response-compliance-review of pnp/sharepoint-skills.

Open the folder on GitHubat commit 69712d2

Compare with similar skills

Rfp Response Compliance Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Rfp Response Compliance Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Rfp Response Compliance Review this skillpnp/sharepoint-skills133—~2.8kAutomated safety check: PassMIT
Energy Procurementaffaan-m/ECC277k4 repos~7.4kAutomated safety check: PassApache-2.0
Procurementericrisco/rsc-harness180—~3.2kAutomated safety check: PassMIT
Procurement Auditvixues/LeAgent232—~321Automated safety check: PassApache-2.0
Rfp Responsemohitagw15856/pm-claude-skills1.4k—~882Automated safety check: PassMIT
Rfp Scoring Matrixmohitagw15856/pm-claude-skills1.4k—~1.4kAutomated safety check: PassMIT

Similar skills

  • Energy Procurement

    affaan-m/ECC

    Procure electricity and natural gas for commercial and industrial facilities: tariff and rate-schedule optimization, demand-charge mitigation, supplier RFPs, fixed/index/block-and-index hedging…

    277k GitHub starsUsed in 4 repos~7.4k tokens
    Business, Finance & HRAuto-check passed
  • Procurement

    ericrisco/rsc-harness

    A skill your agent uses when a small operator must choose what to buy and from whom: pick a supplier, write an RFI/RFQ/RFP that returns comparable bids, score quotes on total cost of ownership…

    180 GitHub stars~3.2k tokensUpdated yesterday
    Business, Finance & HRAuto-check passed
  • Procurement Audit

    vixues/LeAgent

    Review procurement contracts and purchase packages against uploaded compliance rules (招标/采购制度).

    232 GitHub stars~321 tokensUpdated 2 mo ago
    Business, Finance & HRAuto-check passed
  • Rfp Response

    mohitagw15856/pm-claude-skills

    Write a compliant, competitive response to an RFP/RFQ/ITT (government or enterprise procurement).

    1.4k GitHub stars~882 tokensUpdated yesterday
    Sales & SupportAuto-check passed
  • Rfp Scoring Matrix

    mohitagw15856/pm-claude-skills

    Build a weighted RFP evaluation matrix and defensible award recommendation.

    1.4k GitHub stars~1.4k tokensUpdated yesterday
    Sales & SupportAuto-check passed
  • Mmr Loop Skill

    9600dev/mmr

    Autonomous trading loop for the MMR platform. An agent skill from 9600dev/mmr.

    131 GitHub stars~2.6k tokensUpdated 26 days ago
    Business, Finance & HRAuto-check passed

More from pnp/sharepoint-skills

All 52 skills in this repo
  • Scorecard Matrix

    pnp/sharepoint-skills

    Generates a polished, self-contained HTML heatmap scorecard — a weighted comparison matrix where entities (rows) are scored across dimensions (columns), with computed totals, rank badges, and a…

    133 GitHub stars~1.9k tokensUpdated yesterday
    Auto-check passed
  • Analyze Document Library

    pnp/sharepoint-skills

    Analyze the current SharePoint document library in read-only mode and produce a structured summary of files, folders, file types, recent activity, naming issues, and organization recommendations.

    133 GitHub stars~899 tokensUpdated yesterday
    Auto-check passed
  • Broken Link Auditor

    pnp/sharepoint-skills

    Audits SharePoint pages, news posts, and hyperlink fields for broken or risky links and saves a self-contained HTML link-health report to the site.

    133 GitHub stars~2.5k tokensUpdated yesterday
    Auto-check passed
  • Custom Image Tagger

    pnp/sharepoint-skills

    Analyze selected construction images, create missing object metadata columns, and write concise visual metadata back to SharePoint columns using explicit image-analysis, list-schema, list-update…

    133 GitHub stars~1.2k tokensUpdated yesterday
    Auto-check passed
  • Dossier

    pnp/sharepoint-skills

    Renders a polished, self-contained HTML briefing from any data source — SharePoint lists, uploaded documents, or a verbal description.

    133 GitHub stars~1.9k tokensUpdated yesterday
    Auto-check passed
  • Exec Report

    pnp/sharepoint-skills

    Generates a polished, self-contained HTML executive report or dashboard from any data source — SharePoint lists, CSV exports, or a user description.

    133 GitHub stars~2k tokensUpdated yesterday
    Auto-check passed

Questions about Rfp Response Compliance Review

What does Rfp Response Compliance Review do?

Reviews a draft proposal against the firm's configurable compliance rules — prohibited language, required disclosures, role and positioning boundaries, and procurement-submission requirements. Rfp Response Compliance Review is an agent skill from pnp/sharepoint-skills. Reviews a draft proposal against the firm's configurable compliance rules — prohibited language, required disclosures, role and positioning boundaries, and procurement-submission requirements.

When should I use Rfp Response Compliance Review?

Rfp Response Compliance Review fits situations like: tasks that involve Regulatory compliance; tasks that involve Proposals and quotes; tasks that involve Cloud office suites.

How do I install Rfp Response Compliance Review in Claude Code?

Run `npx skills add pnp/sharepoint-skills --skill rfp-response-compliance-review -a claude-code`. Or copy the skill folder (Skills/rfp-response-compliance-review/rfp-response-compliance-review in pnp/sharepoint-skills) into .claude/skills/rfp-response-compliance-review in your project. Claude Code loads it when a task matches its description.

How do I install Rfp Response Compliance Review in Codex?

Run `npx skills add pnp/sharepoint-skills --skill rfp-response-compliance-review -a codex`. Or copy the skill folder (Skills/rfp-response-compliance-review/rfp-response-compliance-review in pnp/sharepoint-skills) into .agents/skills/rfp-response-compliance-review in your project. Codex loads it when a task matches its description.

Can I use Rfp Response Compliance Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add pnp/sharepoint-skills --skill rfp-response-compliance-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/rfp-response-compliance-review, .gemini/skills/rfp-response-compliance-review, .github/skills/rfp-response-compliance-review and .opencode/skills/rfp-response-compliance-review in your project.

What does Rfp Response Compliance Review need to run?

SKILL.md names no scripts, command-line tools or credentials: Rfp Response Compliance Review is instructions for the agent only.

Does Rfp Response Compliance Review access the network?

SKILL.md names 1 domain. In commands or code: contoso.sharepoint.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Rfp Response Compliance Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Rfp Response Compliance Review use?

Rfp Response Compliance Review is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Rfp Response Compliance Review use?

About 2.8k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Rfp Response Compliance Review?

Skills that share tags, products or a category with Rfp Response Compliance Review: Energy Procurement (affaan-m/ECC, 277k stars), Procurement (ericrisco/rsc-harness, 180 stars), Procurement Audit (vixues/LeAgent, 232 stars) and Rfp Response (mohitagw15856/pm-claude-skills, 1.4k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Rfp Response Compliance Review?

pnp (a GitHub organization) maintains it in pnp/sharepoint-skills, which has 133 GitHub stars. The repository holds 52 skills in this directory. The repository was last updated on October 9, 2026.

Source: pnp/sharepoint-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.