fedramp agents

26 tagged fedramp, measured the same way as everything else here.

Browse within: compliance 25audit 14cmmc 14grc 11nist-800-53 10

data-importer

02

oscal-compass-lab/compliance-trestle-skills

Agent

Interactive assistant for converting external data (CSV, XLSX, XCCDF, Tanium scan results, CIS benchmarks) into OSCAL documents using the trestle task system. Inspect source data. Help configure config.ini task sections. Run conversion tasks. Validate output. Use when users need help importing non-OSCAL data into…

15 27d ago A 121 tokens original Apache-2.0

pipeline-architect

03

oscal-compass-lab/compliance-trestle-skills

Agent

Design end-to-end compliance pipelines with Compliance Trestle. Assess existing workspace artifacts. Recommend repository topology (single repo or multi-repo). Design CI/CD pipelines for validation and assembly. Plan component definition strategy (two-phase authoring, Service and Validation types). Walk through the…

15 27d ago A 146 tokens original Apache-2.0

poam-manager

04

oscal-compass-lab/compliance-trestle-skills

Agent

Manage Plan of Action and Milestones (POA&M) lifecycle. Create POA&M items from assessment findings. Track remediation progress. Manage milestones. Make status reports. Use when users need to create, update, or track POA&M items, manage remediation workflows, or review POA&M status. Create a POA&M from my assessment…

15 27d ago A 129 tokens original Apache-2.0

compliance-docs

05

adhocteam/cloud-gov-instructions

Agent

Generates FedRAMP compliance documentation by scanning codebase for NIST SP 800-53 control references. Creates draft System Security Plans (SSP) and Control Implementation Matrices.

10 5mo ago A 42 tokens original MIT

cmmc-assessor

06

vaquarkhan/compliance-agent-skills

Agent

Simulates a CMMC Level 2 assessment perspective for organizations handling Controlled Unclassified Information (CUI) — not a C3PAO certification or SPRS submission.

2 7d ago A 0 tokens original MIT

vaquarkhan/compliance-agent-skills

Agent

Simulates a FedRAMP Third Party Assessment Organization (3PAO) perspective for Moderate baseline authorization packages — not an official FedRAMP assessment or Agency ATO.

2 7d ago A 0 tokens original MIT

sox-it-auditor

08

vaquarkhan/compliance-agent-skills

Agent

Simulates an IT general controls (ITGC) auditor perspective for Sarbanes-Oxley Section 404 financial reporting — not external audit opinion or PCAOB attestation.

2 7d ago A 0 tokens original MIT