Agent skill

Policy Monitor

by zhou210712 in zhou210712/claude-for-legal-ZH

保持AI使用政策与当前实践一致。两种模式:每周扫描已保存的AI 评估和分类结果以发现政策漂移;或对提议的新实践进行直接查询。

Apache-2.0Auto-check passedLegal & Compliance

Install Policy Monitor

skills CLI
$ npx skills add zhou210712/claude-for-legal-ZH --skill policy-monitor -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install zhou210712/claude-for-legal-ZH policy-monitor --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/zhou210712/claude-for-legal-ZH.git skills-src && mkdir -p .claude/skills && cp -r skills-src/ai-governance-legal/skills/policy-monitor .claude/skills/policy-monitor && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
policy-monitor
GitHub stars
225
Token cost
~1.3k tokens
SKILL.md length
175 words
Files
1
Skills in repo
122
Repo updated
First seen
Licence
Apache-2.0

At a glance

保持AI使用政策与当前实践一致。两种模式:每周扫描已保存的AI 评估和分类结果以发现政策漂移;或对提议的新实践进行直接查询。

  • Works in 6 steps: 读取… → 运行以下工作流。扫描输出文件夹中自上次扫描以来的文件。 → 对每个输出:提取已批准的实践 → 与当前政策承诺对比。 → …
  • Tasks that involve AI governance
  • SKILL.md covers 目的, 加载当前状态, 模式检测 and 模式一:扫描, plus 4 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Policy Monitor is an agent skill from zhou210712/claude-for-legal-ZH. 保持AI使用政策与当前实践一致。两种模式:每周扫描已保存的AI 评估和分类结果以发现政策漂移;或对提议的新实践进行直接查询。 适用于用户询问"我们的AI政策是否覆盖了这一点"、"我们想 开始做X——政策需要更新吗"、"运行AI政策监测"、"政策扫描" 或需要发现AI政策与实际操作不符之处时。

Its SKILL.md is about 1.3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Legal & Compliance, covering AI governance. It works with xAI Grok. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve AI governance

Example prompts

  • “我们的AI政策是否覆盖了这一点”
  • “我们想 开始做X——政策需要更新吗”
  • “运行AI政策监测”
  • “/policy-monitor”

Workflow steps

6 steps, taken from the first numbered list in SKILL.md.

  1. 读取 ~/.claude/plugins/config/claude-for-legal/ai-governance-legal/CLAUDE.md → 输出文件夹路径、AI使用政策文档、上次扫描日期。
  2. 运行以下工作流。扫描输出文件夹中自上次扫描以来的文件。
  3. 对每个输出:提取已批准的实践 → 与当前政策承诺对比。
  4. 分类差距:必须(政策与实际操作不符)vs 建议(政策未提及)。
  5. 对每个差距:引用当前政策、描述差距、起草建议语言。
  6. 更新 ~/.claude/plugins/config/claude-for-legal/ai-governance-legal/CLAUDE.md 中的上次政策扫描日期。

What it can do on your machine

Read from SKILL.md and the folder at commit 2f01c92. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are markdown).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Policy Monitor loads about 1.3k tokens when it runs. Until then it costs about 40 tokens; SKILL.md has 175 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~40
When it runs · the whole SKILL.md, loaded when a task matches
~1.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from zhou210712/claude-for-legal-ZH at commit 2f01c92, republished under its Apache-2.0 licence (© zhou210712). 175 words, ~1,323 tokens.

Download SKILL.mdSave it as .claude/skills/policy-monitor/SKILL.md (or your agent's skills folder).
name
policy-monitor
description
保持AI使用政策与当前实践一致。两种模式:每周扫描已保存的AI 评估和分类结果以发现政策漂移;或对提议的新实践进行直接查询。 适用于用户询问"我们的AI政策是否覆盖了这一点"、"我们想 开始做X——政策需要更新吗"、"运行AI政策监测"、"政策扫描" 或需要发现AI政策与实际操作不符之处时。
argument-hint
[描述提议的新AI实践 — 或省略/使用 --sweep 进入扫描模式]

/policy-monitor

扫描模式(无参数或 --sweep):

  1. 读取 ~/.claude/plugins/config/claude-for-legal/ai-governance-legal/CLAUDE.md → 输出文件夹路径、AI使用政策文档、上次扫描日期。
  2. 运行以下工作流。扫描输出文件夹中自上次扫描以来的文件。
  3. 对每个输出:提取已批准的实践 → 与当前政策承诺对比。
  4. 分类差距:必须(政策与实际操作不符)vs 建议(政策未提及)。
  5. 对每个差距:引用当前政策、描述差距、起草建议语言。
  6. 更新 ~/.claude/plugins/config/claude-for-legal/ai-governance-legal/CLAUDE.md 中的上次政策扫描日期。

直接查询模式(有描述参数):

  1. 读取 ~/.claude/plugins/config/claude-for-legal/ai-governance-legal/CLAUDE.md → 当前政策承诺 + 实际政策文档。
  2. 解析提议的实践。与政策对比:AI系统类型、数据使用、透明度、安全措施、用户权利、供应商管理。
  3. 输出:已覆盖 / 缺失 / 冲突 + 每个差距的建议语言 + 时机建议。
/ai-governance-legal:policy-monitor
/ai-governance-legal:policy-monitor "我们想在内部使用AI生成客户邮件的草稿"

AI使用政策监测

目的

AI使用政策与实际实践之间的漂移是单向的:实践向前发展,政策滞留在后。AI评估批准了新的模型。一个AI供应商带来了新功能。分类结果标记了一个有额外透明度要求的用例——但面向用户的AI使用政策还没有相应语言。政策最终与实际发生的事不符。

此技能在漂移成为问题之前捕获它——无论是通过每周爬取输出文件夹,还是通过回答直接问题:"我们即将开始做X,这对政策意味着什么?"

输出总是相同的:这里是差距,这里是建议的语言。


加载当前状态

读取 ~/.claude/plugins/config/claude-for-legal/ai-governance-legal/CLAUDE.md:

  • ## 监管注册表 — 适用法规范围
  • ## AI使用政策 — 已对外公开的AI使用承诺或内部AI治理政策摘要
  • ## AI系统清单 — 所有已部署、在评估和已退役的系统
  • ## 输出 — 输出文件夹路径、AI使用政策文档位置、上次政策扫描日期

如果 ## 输出 包含 [PLACEHOLDER]:

"输出尚未配置。我仍然可以运行直接查询检查——描述你计划做的事情,我会将其与你当前政策进行对比。要启用爬取扫描,请运行 /ai-governance-legal:cold-start-interview 并提供输出文件夹路径。"

读取 ## 输出 → AI使用政策文档 路径下的实际政策文档。配置CLAUDE.md中的承诺是摘要;实际文档是建议编辑的权威来源。

AI承诺存在于多个界面——全部扫描

面向用户的AI使用政策声明是一个界面。现代AI监管审查中,AI承诺至少存在于以下三个额外地方:

  1. AI服务协议/界面:在AI功能界面上的披露(例如"AI生成内容,仅供参考")。如果政策说"我们对所有AI生成内容进行人工审核"但产品界面没有相应标识,就是冲突。
  2. 算法备案公示信息:已完成的算法备案在网信办指定系统中的公示信息(《互联网信息服务算法推荐管理规定》第24条 [法条原文])。如果备案信息中描述的数据处理范围与当前政策不一致,网信办有直接可见的不一致。
  3. 科技伦理审查材料:提交给伦理审查委员会的材料中关于数据处理和算法使用的声明。如果伦理审查中承诺的保障措施在面向用户政策中没有体现,就是差距。

在实践配置文件中添加每个界面的位置和最后更新日期字段。 扫描时逐一检查并与当前政策对比,标记分歧。


模式检测

扫描模式: 无参数、--sweep 或由定时任务触发。 → 扫描输出文件夹。将自上次扫描以来的所有输出与当前政策对比。

直接查询模式: 用户提供提议的新AI实践描述。 → 将该实践与当前政策对比。建议更新。


模式一:扫描

确定范围

读取 ## 输出 → 上次AI政策扫描 日期。扫描输出文件夹中该日期之后的输出文件。如果未记录日期,扫描所有文件并注明:"首次扫描——扫描所有输出。"

如果输出文件夹为空或自上次扫描以来没有新文件:

"自[上次扫描日期]以来没有新输出。AI使用政策与近期实践一致。下次计划扫描:[日期]。"

扫描完成后更新 ## 输出 → 上次AI政策扫描 为今天的日期。

每种输出类型应读取的内容

AI系统评估(全面轨):

  • 提取:AI系统类型、所涉数据类别、训练数据来源、透明度措施、安全措施、用户权利影响、算法备案状态
  • 标记:清单中不在当前政策承诺中的任何内容

AI用例分类结果:

  • 提取:已批准或附条件批准的内容、施加的任何条件暗示了公开承诺(例如"需要在AI使用政策中披露使用了推荐算法")
  • 标记:批准但政策未覆盖的实践、需要政策语言的条件

AI供应商审查:

  • 提取:使用的AI供应商、供应商处理的数据类别、供应商的模型训练做法、协议中的合规承诺
  • 标记:政策中未列出的供应商(如果政策列出供应商)、新的数据处理类别、新的AI功能
差距识别

对每个标记项目,评估:

必须更新 — 政策所做的承诺与此输出矛盾,或AI处理正在发生但政策完全没有覆盖。不更新会产生实质性的虚假陈述。

示例:AI政策说"我们不对用户数据进行AI训练"。AI供应商审查批准了一个供应商将部分客户数据用于模型改进。政策与批准实践矛盾——必须更新。

建议更新 — 政策未提及但无冲突。处理的合法性在没有更新的情况下也可以成立,但更新后更完整。

示例:AI政策说"我们可能在部分功能中使用AI技术"。AI系统评估批准了一个新的AI驱动客服聊天机器人。政策未具体提到客服AI,但也不排除它。建议在政策中增加具体说明。

扫描输出格式
markdown
[工作成果头 — 按照插件配置 ## 输出]

# AI使用政策监测 — 扫描报告

**日期:** [日期]
**扫描输出数:** [N个文件] | **自上次扫描以来的新输出:** [N个文件]
**发现差距:** [N] 必须 | [N] 建议

---

## 必须更新

### [差距1简短名称]

**来源:** [触发此差距的文件名/输出类型]
**实际情况:** [新实践的简明描述]
**当前政策:** [引用相关部分——或"无覆盖"]
**差距:** [缺失或不一致的内容]

**建议语言:**
> *添加到[章节名称]:*
> "[起草的政策文本——具体、与现有政策语言风格一致]"

---

[对每个必须差距重复]

---

## 建议更新

### [差距名称]

**来源:** [文件名]
**实际情况:** [描述]
**当前政策:** [引用或"未提及"]
**建议语言:**
> *添加到/更新[章节]:*
> "[起草的文本]"

---

## 无需行动

[列出扫描过但未发现差距的输出——确认已审阅]

---

## 下一步

- [ ] 审阅必须更新——每项都需要在相关功能/处理上线之前(或立即,如果已上线)做出决定
- [ ] 审阅建议更新——紧急程度较低,但值得在下一次政策更新时处理
- [ ] 下次计划扫描:[日期]

模式二:直接查询

解析提议的实践

从用户描述中提取:

  • 涉及什么类型的AI系统或模型?
  • 用于什么目的?
  • 涉及什么数据?
  • 谁使用它(内部还是面向公众)?
  • 是否有自动化决策?
  • 是否涉及生成合成内容或深度合成?
  • 是否需要向用户进行新的披露?

如果描述模糊,在继续之前问一个澄清问题。不要运行冗长的录入——此模式应该快速。

政策对比

将提议的实践与当前AI使用政策的每个相关部分进行核查:

核查项当前政策表述提议实践结论
AI系统类型[政策列出的类型][新类型]🟢已覆盖 / 🟡差距 / 🔴冲突
数据使用[声明的数据使用方式][新方式]
透明度/披露[声明的透明度措施][所需披露]
训练数据实践[声明的训练做法][新做法]
人工审核[人工审核承诺][新实践的人工参与度]
用户控制[用户选择/退出机制][新实践的用户控制]
直接查询输出格式
markdown
[工作成果头 — 按照插件配置 ## 输出]

# AI使用政策检查:[提议实践一行描述]

**结论:** [需要更新政策 / 建议更新 / 无需更新]

---

## 已覆盖

[列出当前政策已经覆盖的实践方面——简要概括,确认不需要改变]

## 缺失

### [差距1]

**当前政策:** [引用或"未提及"]
**为什么需要补:** [为什么这个差距重要——法律、声誉或一致性原因]

**建议语言:**
> *添加到[章节]:*
> "[起草的文本]"

### [差距2]
[相同格式]

## 冲突

### [冲突1——如有]

**当前政策表述:** [引用]
**提议实践:** [冲突之处]
**解决方向:** [哪一方需要改变及原因——通常是实践调整以匹配政策,或政策更新至新的可辩护立场]

---

## 时机

[如果有任何必须差距:"政策更新应在实践上线之前完成。"
如果是建议:"可以继续推进;在下一次政策更新时处理。"]

建议语言的质量标准

政策语言应:

  • 与现有AI使用政策的语气和风格一致(在起草前阅读实际文档,而非仅凭CLAUDE.md摘要)
  • 足够具体以有意义,但不过于具体以致常规变更破坏它("我们使用AI技术来提升服务质量" 比列出每个模型名称更经得起时间考验)
  • 不做团队无法遵守的承诺(例如,如果架构是每次API调用都流经第三方,不要起草"我们不会将数据发送给第三方AI供应商")
  • 标记可能需要更广泛政策立场变更的地方,而不仅仅是增加一句话

起草时,始终说明应添加到哪个章节。如果合适的章节不存在,要说明并建议创建它。


收尾

以 CLAUDE.md ## 输出 规定的下一步决策树收尾。

如果扫描产生的漂移发现超过约10项,或用户任何时候提出要求:提供仪表板(见 CLAUDE.md ## 输出 → 数据密集型输出的仪表板提议)。针对此输出定制提议——按界面(政策条款/AI评估/用例分类/供应商审查)统计、按严重程度统计、以及可排序的发现网格,附来源工件和建议的整改措施。


本技能不做的事

  • 不直接更新政策本身——起草建议语言并标记决策,但由人工审阅和批准每项变更。
  • 不捕获法规变化——那是 reg-gap-analysis 的职责。此技能监测内部实践漂移,而非外部法律变化。
  • 不强制输出被保存——如果团队没有将AI评估保存到配置的文件夹,扫描不会找到它们。直接查询模式无需保存的输出即可工作。
  • 不读取邮件或即时通讯中的非正式决定——只能扫描保存到配置文件夹的结构化输出。

© zhou210712, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in ai-governance-legal/skills/policy-monitor of zhou210712/claude-for-legal-ZH.

Open the folder on GitHubat commit 2f01c92

Compare with similar skills

Policy Monitor next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Policy Monitor compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Policy Monitor this skillzhou210712/claude-for-legal-ZH225—~1.3kAutomated safety check: PassApache-2.0
Iso42001Sushegaad/Claude-Skills-Governance-Risk-and-Compliance9461 repos~3.7kAutomated safety check: PassMIT
AI Risk Managementbriiirussell/cybersecurity-skills413—~3.7kAutomated safety check: NotesMIT
EU AI Act System Inventoryanthropics/claude-for-legal9.6k3 repos~2.8kAutomated safety check: PassApache-2.0
Eu AI Act Readinessseb1n/awesome-ai-agent-skills206—~3.3kAutomated safety check: PassMIT
AI GovernanceHack23/cia239—~1.4kAutomated safety check: PassApache-2.0

Similar skills

  • Iso42001

    Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

    Expert ISO 42001 AI Management System (AIMS) compliance advisor.

    946 GitHub starsUsed in 1 repo~3.7k tokens
    Legal & ComplianceAuto-check passed
  • AI Risk Management

    briiirussell/cybersecurity-skills

    Apply the NIST AI Risk Management Framework (AI RMF 1.0) and adjacent guidance to AI / ML systems — model lifecycle governance, fairness and bias evaluation, robustness, transparency…

    413 GitHub stars~3.7k tokensUpdated 4 mo ago
    Legal & ComplianceAuto-check: notes
  • EU AI Act System Inventory

    anthropics/claude-for-legal

    Official

    Maintains a register of AI systems under the EU AI Act, recording each system's role and risk tier separately, because both can differ from one system to the next.

    9.6k GitHub starsUsed in 3 repos~2.8k tokens
    Legal & ComplianceAuto-check passed
  • Eu AI Act Readiness

    seb1n/awesome-ai-agent-skills

    Build a preliminary, evidence-based EU AI Act readiness assessment across AI-system inventory, territorial scope, operator roles, prohibited-practice screening, risk classification, transparency…

    206 GitHub stars~3.3k tokensUpdated 2 mo ago
    Legal & ComplianceAuto-check passed
  • AI Governance

    Hack23/cia

    AI governance, EU AI Act compliance, OWASP LLM security, responsible AI practices for GitHub Copilot agents

    239 GitHub stars~1.4k tokensUpdated today
    Legal & ComplianceAuto-check passed
  • Compliance Testing

    petrkindlmann/qa-skills

    Test for regulatory compliance: GDPR/CMP consent verification, Google Consent Mode v2, Global Privacy Control (GPC), CCPA/US state opt-out, EU AI Act Article 50 transparency, Better Ads Standards…

    170 GitHub stars~4.6k tokensUpdated 4 mo ago
    Legal & ComplianceAuto-check passed

More from zhou210712/claude-for-legal-ZH

All 122 skills in this repo
  • Claim Chart

    zhou210712/claude-for-legal-ZH

    构建或审查要件分析表——专利权利要求对照表(侵权、无效或审查)或 民事构成要件分析表(任何诉讼请求或抗辩),每个单元格附精确引用, 缺口检测为优先输出。当用户要求要件分析表、权利要求对照表、 证据对照表、侵权或无效主张、逐要件映射,或问"我们证明[主张]还缺什么"时使用。

    225 GitHub stars~1.3k tokensUpdated 4 mo ago
    Auto-check passed
  • Client Intake

    zhou210712/claude-for-legal-ZH

    结构化接待——实践领域模板、跨领域考点识别、利益冲突标记、分流分类. An agent skill from zhou210712/claude-for-legal-ZH.

    225 GitHub stars~1.2k tokensUpdated 4 mo ago
    Auto-check passed
  • Gap Surfacer

    zhou210712/claude-for-legal-ZH

    参考资料:支持 /regulatory-legal:gaps 和 /regulatory-legal:comments 的共享差距和意见征集跟踪框架。跟踪未关闭的政策差距及其整改状态, 从 policy-diff 中获取差距,呈现开放和即将到期的事项,路由给负责人, 并通过企业通讯工具通知差距负责人,每次发送前需确认。

    225 GitHub stars~757 tokensUpdated 4 mo ago
    Auto-check passed
  • Launch Review

    zhou210712/claude-for-legal-ZH

    对照您的框架和风险校准进行全面产品上线审查。当用户说"审查这个上线" "[功能]法务审查""我们能上线吗""[产品]有什么法律问题"或引用了需要 逐类审查备忘录的产品需求文档或上线追踪工单时使用。

    225 GitHub stars~2k tokensUpdated 4 mo ago
    Auto-check passed
  • Reg Feed Watcher

    zhou210712/claude-for-legal-ZH

    检查法规动态源,报告自上次检查以来的新事项,按重要度阈值过滤。适用于用户说"检查法规动态"、"有什么新规定"、"法规更新"、从定时任务触发执行,或手动粘贴法规动态进行分类和差异分析时。

    225 GitHub stars~1.2k tokensUpdated 4 mo ago
    Auto-check passed
  • Renewal Tracker

    zhou210712/claude-for-legal-ZH

    展示具有即将到来的取消截止日期的合同,在通知窗口关闭前发出预警, 基于维护的续约登记册运行。当用户询问"什么即将续约""哪些续约即将到期" "我们是否错过了取消窗口""将此添加到续约追踪器"时使用,或按计划运行。

    225 GitHub stars~681 tokensUpdated 4 mo ago
    Auto-check passed

Works with

Questions about Policy Monitor

What does Policy Monitor do?

保持AI使用政策与当前实践一致。两种模式:每周扫描已保存的AI 评估和分类结果以发现政策漂移;或对提议的新实践进行直接查询。. Policy Monitor is an agent skill from zhou210712/claude-for-legal-ZH.

When should I use Policy Monitor?

Policy Monitor fits situations like: tasks that involve AI governance.

How do I install Policy Monitor in Claude Code?

Run `npx skills add zhou210712/claude-for-legal-ZH --skill policy-monitor -a claude-code`. Or copy the skill folder (ai-governance-legal/skills/policy-monitor in zhou210712/claude-for-legal-ZH) into .claude/skills/policy-monitor in your project. Claude Code loads it when a task matches its description.

How do I install Policy Monitor in Codex?

Run `npx skills add zhou210712/claude-for-legal-ZH --skill policy-monitor -a codex`. Or copy the skill folder (ai-governance-legal/skills/policy-monitor in zhou210712/claude-for-legal-ZH) into .agents/skills/policy-monitor in your project. Codex loads it when a task matches its description.

Can I use Policy Monitor in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add zhou210712/claude-for-legal-ZH --skill policy-monitor -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/policy-monitor, .gemini/skills/policy-monitor, .github/skills/policy-monitor and .opencode/skills/policy-monitor in your project.

What does Policy Monitor need to run?

SKILL.md names no scripts, command-line tools or credentials: Policy Monitor is instructions for the agent only.

Does Policy Monitor access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Policy Monitor safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Policy Monitor use?

Policy Monitor is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Policy Monitor use?

About 1.3k tokens (SKILL.md is roughly 5.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Policy Monitor?

Skills that share tags, products or a category with Policy Monitor: Iso42001 (Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, 946 stars), AI Risk Management (briiirussell/cybersecurity-skills, 413 stars), EU AI Act System Inventory (anthropics/claude-for-legal, 9.6k stars) and Eu AI Act Readiness (seb1n/awesome-ai-agent-skills, 206 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Policy Monitor?

zhou210712 (a GitHub user) maintains it in zhou210712/claude-for-legal-ZH, which has 225 GitHub stars. The repository holds 122 skills in this directory. The repository was last updated on May 15, 2026.

Source: zhou210712/claude-for-legal-ZH on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.