Topic · Legal & Compliance
Best SOC 2 and security compliance skills, page 3
SOC 2 and security compliance skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | Scope an ISO 27001 ISMS and build the Statement of Applicability across Annex A controls. | mohitagw15856/ | 1.4k | — | ~996 | Automated safety check: Pass | MIT | yesterday |
| 98 | Assess SOC 2 readiness across the Trust Services Criteria and produce a gap remediation plan. | mohitagw15856/ | 1.4k | — | ~1k | Automated safety check: Pass | MIT | yesterday |
| 99 | Run a third-party / vendor security review and assign a risk tier with required controls. | mohitagw15856/ | 1.4k | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 100 | Analyze and design an AssemblyAI architecture spanning pre-recorded jobs, Streaming v3, LLM Gateway, callbacks, queues, retention, and audit evidence. | jeremylongshore/ | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | today |
| 101 | Configure isolated development, staging, and production Canva integrations. | jeremylongshore/ | 2.8k | — | ~1k | Automated safety check: Pass | MIT | today |
| 102 | Compliance and security auditing for Cursor IDE usage: SOC 2, GDPR, HIPAA assessment, evidence collection, and remediation. | jeremylongshore/ | 2.8k | — | ~2.3k | Automated safety check: Notes | MIT | today |
| 103 | Security and privacy configuration for Granola meeting data. | jeremylongshore/ | 2.8k | — | ~1.7k | Automated safety check: Pass | MIT | today |
| 104 | Lock down a Guidewire Cloud API integration so it survives a SOC 2 audit, an NAIC Model Audit Rule review, and a real-world incident — least-privilege role design, encrypted committed secrets via… | jeremylongshore/ | 2.8k | — | ~3.5k | Automated safety check: Notes | MIT | today |
| 105 | Govern Linear workspace roles, team access, OAuth scopes, SCIM provisioning, and audit evidence. | jeremylongshore/ | 2.8k | — | ~1.3k | Automated safety check: Pass | MIT | today |
| 106 | Instrument Linear API, SDK, webhook, queue, and reconciliation behavior with useful redacted signals. | jeremylongshore/ | 2.8k | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 107 | Review OpenRouter integration for regulatory compliance (SOC2, GDPR, HIPAA). | jeremylongshore/ | 2.8k | — | ~2.3k | Automated safety check: Notes | MIT | today |
| 108 | Configure GDPR-compliant data handling, PII scrubbing, and data retention policies in Sentry. | jeremylongshore/ | 2.8k | — | ~4.2k | Automated safety check: Pass | MIT | today |
| 109 | Maps infrastructure code (Terraform, Kubernetes, CloudFormation) to compliance controls (ISO 27001, SOC 2, NIST 800-53). | GRCEngClub/ | 420 | — | ~524 | Automated safety check: Notes | Unknown | 5 days ago |
| 110 | 110.Pp Carstay Plan Japan designated overnight stops through Carstay: discover Japanese listings, compare facilities, check parking-space constraints, audit evidence and produce booking handoffs. | mvanhorn/ | 2.1k | — | ~3.4k | Automated safety check: Pass | No licence | today |
| 111 | Data governance & compliance for CometChat — pick the data-residency region, satisfy GDPR/CCPA (right-to-erasure and data export), plan message retention & purge, and produce audit / eDiscovery… | cometchat/ | 131 | — | ~1.7k | Automated safety check: Pass | MIT | 4 days ago |
| 112 | Unified compliance verification across ISO 27001, NIST CSF, CIS Controls, NIS2, EU CRA, GDPR, SOC 2, PCI DSS, and HIPAA for cybersecurity consulting | Hack23/ | 239 | — | ~994 | Automated safety check: Pass | Apache-2.0 | today |
| 113 | Cross-framework compliance alignment and control mapping between ISO 27001, NIST CSF, CIS Controls, and GDPR | Hack23/ | 239 | — | ~2k | Automated safety check: Pass | Apache-2.0 | today |
| 114 | Multi-framework compliance (ISO 27001, NIST CSF, CIS Controls, GDPR, NIS2, EU CRA, SOC 2), control mapping | Hack23/ | 239 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | today |
| 115 | Verify implementation of ISO 27001:2022 information security controls across CIA platform development and operations | Hack23/ | 239 | — | ~4.4k | Automated safety check: Pass | Apache-2.0 | today |
| 116 | 116.Compliance A skill your agent uses when scoping which regulatory frameworks bind a business — SOC 2, ISO 27001, HIPAA, PCI DSS, EU AI Act, DORA, NIS2 — building a control register with owners and evidence, or… | ericrisco/ | 174 | — | ~2.4k | Automated safety check: Pass | MIT | yesterday |
| 117 | 117.Data Policy A skill your agent uses when building internal data-governance machinery: a retention schedule (period, lawful basis, expiry action, system where deletion runs), an Art. | ericrisco/ | 174 | — | ~3.1k | Automated safety check: Pass | MIT | yesterday |
| 118 | 118.Dd Audit Audit Trail investigations - who changed what, key compromise, cost spike root cause, compliance evidence (SOC 2/PCI), and AI activity auditing. | datadog-labs/ | 177 | — | ~965 | Automated safety check: Pass | MIT | today |
| 119 | Apply when writing code that touches auth, data access, file handling, or external APIs. | stella/ | 258 | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | today |
| 120 | 120.Ciso Advisor Security leadership for growth-stage companies. An agent skill from borghei/Claude-Skills. | borghei/ | 886 | — | ~5.3k | Automated safety check: Pass | MIT | 2 days ago |
| 121 | 121.Iso 27701 Pims Guides ISO 27701 Privacy Information Management System implementation extending ISO 27001/27002. | mukul975/ | 297 | — | ~4.7k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 122 | 122.Clay Docs A skill your agent uses when the user asks a Clay product question — how a feature works, whether Clay supports or integrates with something, what plans include, security/compliance, or what's new —… | clay-run/ | 130 | — | ~1.7k | Automated safety check: Pass | No licence | 2 days ago |
| 123 | AI compliance and policy engine — evaluate scan results against OWASP, NIST, SOC 2, ISO 27001, CMMC, EU AI Act, AISVS v1.0, and related frameworks. | LeoYeAI/ | 2.2k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 124 | 124.Compliance Audit Performs regulatory gap analysis across 7 compliance frameworks with a scored report card and prioritized remediation roadmap. | jeremylongshore/ | 2.8k | — | ~3.1k | Automated safety check: Pass | MIT | today |
| 125 | A skill your agent uses whenever the user wants to find, shortlist, vet, or enrich US cybersecurity firms — pen-testing/red team, security audits, vCISO, SOC 2 readiness, incident response, managed… | jeremylongshore/ | 2.8k | — | ~3.7k | Automated safety check: Notes | MIT | today |
| 126 | 126.Find Law Firm A skill your agent uses whenever the user wants to find, shortlist, vet, or enrich US B2B law firms — corporate, IP/patent, M&A and securities, employment, commercial litigation… | jeremylongshore/ | 2.8k | — | ~3.6k | Automated safety check: Notes | MIT | today |
| 127 | Apply security best practices for Fondo including OAuth token management, financial data protection, SOC 2 compliance, and access control. | jeremylongshore/ | 2.8k | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 128 | Analyze iso27001 gap analyzer operations. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~579 | Automated safety check: Pass | MIT | today |
| 129 | Validate soc2 compliance checker operations. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~581 | Automated safety check: Pass | MIT | today |
| 130 | Cisco ISE posture and policy audit - authorization rules, posture compliance, profiling gaps, TrustSec SGT matrix, active session health. | automateyournetwork/ | 676 | — | ~3k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 131 | 131.Security Auditor Security vulnerability scanner and OWASP compliance auditor for codebases. | curiositech/ | 243 | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 132 | Risk-based data and asset classification framework: PUBLIC, INTERNAL, CONFIDENTIAL, RESTRICTED aligned with ISO 27001 A.5.12 and CIA triad | Hack23/ | 239 | — | ~7.4k | Automated safety check: Pass | Apache-2.0 | today |
| 133 | Generate a prioritised compliance checklist for GDPR, SOC 2, ISO 27001, FCA, HIPAA, or other frameworks with a gap analysis. | mohitagw15856/ | 1.4k | — | ~1.2k | Automated safety check: Pass | MIT | yesterday |
| 134 | Draft answers to a vendor security questionnaire (SIG, CAIQ, or a custom sheet) from your real controls — fast, consistent, and honest about gaps. | mohitagw15856/ | 1.4k | — | ~1k | Automated safety check: Pass | MIT | yesterday |
| 135 | 安全策略助手 - 专业的企业安全体系规划与治理专家。适用场景: (1) 企业安全战略规划 (2) 安全架构与框架设计 (3) 安全政策与制度制定 (4) 安全合规体系建设(等保/ISO27001) (5) 安全风险评估与管理 (6) 安全培训与意识提升 (7) 安全成熟度评估 触发关键词:安全策略、安全架构、安全合规、等保、ISO27001、安全治理、安全风险、安全制度、安全培训、安全评估、零信任 | chendongqi/ | 125 | — | ~1.1k | Automated safety check: Pass | No licence | 8 mo ago |
| 136 | 136.Security Auditor Assess vulnerabilities and audit for security compliance using OWASP and STRIDE methodology — a user-invoked Security Auditor workflow. | dralgorhythm/ | 125 | — | ~496 | Automated safety check: Pass | No licence | 2 mo ago |
| 137 | COO methodology for process design, organizational scaling, operational metrics, compliance and audit, vendor management, and team topology. | magnus919/ | 282 | — | ~1.3k | Automated safety check: Pass | MIT | 3 mo ago |
| 138 | Build evidence-oriented readiness checklists for frameworks such as SOC 2, HIPAA, PCI DSS, and GDPR, with gaps and remediation priorities. | seb1n/ | 206 | — | ~2.5k | Automated safety check: Pass | MIT | 2 mo ago |
| 139 | Design and improve operational processes, controls, metrics, vendors, and scaling models through bounded pilots and evidence. | magnus919/ | 116 | — | ~1.4k | Automated safety check: Pass | MIT | yesterday |
| 140 | Guides privacy audit evidence collection processes including evidence planning, sampling strategies, documentation standards, chain of custody, interview techniques, system walkthrough procedures… | mukul975/ | 297 | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 141 | Cloud service provider privacy assessment framework. An agent skill from mukul975/Privacy-Data-Protection-Skills. | mukul975/ | 297 | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 142 | Guides SOC 2 Type II Privacy Trust Services Criteria preparation and audit execution. | mukul975/ | 297 | — | ~4.9k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 143 | Vendor certification acceptance criteria and equivalence mapping. | mukul975/ | 297 | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 144 | 144.Security Information security expertise for cybersecurity frameworks (NIST, ISO 27001), security architecture, incident response, vulnerability management, identity management, and cloud security. | travisjneuman/ | 101 | — | ~3.3k | Automated safety check: Pass | MIT | yesterday |