fedramp skills

110 tagged fedramp, measured the same way as everything else here.

Browse within: compliance 110cmmc 50claude-ai 38data-privacy 38gdpr 38audit 30auditing 20grc 20nist-800-53 18

eu-cra

01

Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

Skill Claude CodeCodex

Expert EU Cyber Resilience Act (CRA) advisor for Regulation (EU) 2024/2847 — mandatory cybersecurity and vulnerability handling requirements for all products with digital elements (PDEs) sold in the EU. Use this skill for gap analysis, product classification (Default / Class I / Class II), conformity assessment route…

862 5d ago A 133 tokens original MIT

fedramp

02

Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

Skill Claude CodeCodex

Expert guidance for FedRAMP certification and compliance under CR26 (FedRAMP Consolidated Rules for 2026). Use this skill whenever a user asks about FedRAMP authorization, ATO (Authority to Operate), cloud security for federal government, NIST SP 800-53 controls, CSP compliance, or any of the core FedRAMP document…

862 5d ago A 236 tokens original MIT

iso42001

03

Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

Skill Claude CodeCodex

Expert ISO 42001 AI Management System (AIMS) compliance advisor. Use this skill whenever a user asks about ISO/IEC 42001:2023, AI governance, AI management systems, AI risk assessment, AI system impact assessment, Annex A controls for AI, Statement of Applicability for AI systems, AI policy, responsible AI, AI…

862 5d ago A 173 tokens original MIT

GRCEngClub/claude-grc-engineering

Skill Claude CodeCodex

Guide a research project through the full academic lifecycle — from raw idea to concrete research question, literature grounding, methodology, writing, feedback, and publication. Use this skill whenever the user shares a research idea, asks to "flesh out" a topic, wants sources or a literature review, asks about…

391 2d ago A 173 tokens

GRCEngClub/claude-grc-engineering

Skill Claude CodeCodex

Expertise in evaluating AWS accounts for compliance — what checks are meaningful, which SCF controls they map to, and how to interpret aws CLI output.

391 2d ago A 36 tokens

ch-fadp-expert

06

GRCEngClub/claude-grc-engineering

Skill Claude CodeCodex

Swiss Federal Act on Data Protection (nFADP) expert. Deep knowledge of the revised 2023 Swiss FADP including voluntary DSO, risk-based breach notification, individual criminal enforcement, Swiss transfer mechanisms, and key divergences from GDPR.

391 2d ago A 58 tokens

control-mapping

07

hackIDLE/fedramp-docs-mcp

Skill Claude CodeCodex

Maps NIST controls to FedRAMP requirements and documents. Use when helping with control implementation, compliance mapping, security baseline alignment, or understanding control requirements.

18 4mo ago A 35 tokens original MIT archived

frmr-analysis

08

hackIDLE/fedramp-docs-mcp

Skill Claude CodeCodex

Analyzes FedRAMP FRMR documents to extract control mappings, KSI entries, and version changes. Use when the user asks about FedRAMP requirements, control mappings, compliance data, or needs to understand FRMR document content.

18 4mo ago A 51 tokens original MIT archived

oscal-compass-lab/compliance-trestle-skills

Skill Claude CodeCodex

Use this skill for end-to-end compliance pipelines with Compliance Trestle. Topics include GRC personas, artifact ownership, multi-repository coordination, two-phase component definition authoring, CI/CD pipeline integration, and the Compliance-to-Policy (C2P) bridge. Use it for compliance pipelines, personas…

15 28d ago A 103 tokens original Apache-2.0

oscal-compass-lab/compliance-trestle-skills

Skill Claude CodeCodex

Use this skill to write control implementation responses, rules, parameters, and component-level responses. Use it for inheritance and leveraged SSPs in Compliance Trestle. Use it for control responses, implementation status, rules, parameters, component definitions, SSP implementation details, or compliance…

15 28d ago A 64 tokens original Apache-2.0

trestle-task-system

11

oscal-compass-lab/compliance-trestle-skills

Skill Claude CodeCodex

Use this skill for the Compliance Trestle task system for data conversion and transformation. Use it for CSV import, XLSX import, XCCDF results, Tanium results, and CIS benchmarks. Use it for config.ini task configuration, trestle tasks, or conversion of scan results to assessment results.

15 28d ago A 68 tokens original Apache-2.0

hipaa-compliance

12

Jandyoverseas977/Claude-Skills-Governance-Risk-and-Compliance

Skill Claude CodeCodex

Expert HIPAA compliance assistant for healthcare and software contexts. Use this skill whenever the user mentions HIPAA, PHI (Protected Health Information), ePHI, covered entities, business associates, healthcare data privacy, medical records, health information security, BAA (Business Associate Agreements), or any…

3 2d ago A 161 tokens copy · 86% MIT

iso42001

13

Jandyoverseas977/Claude-Skills-Governance-Risk-and-Compliance

Skill Claude CodeCodex

Expert ISO 42001 AI Management System (AIMS) compliance advisor. Use this skill whenever a user asks about ISO/IEC 42001:2023, AI governance, AI management systems, AI risk assessment, AI system impact assessment, Annex A controls for AI, Statement of Applicability for AI systems, AI policy, responsible AI, AI…

3 2d ago A 173 tokens copy · 91% MIT

tsa-compliance

14

Jandyoverseas977/Claude-Skills-Governance-Risk-and-Compliance

Skill Claude CodeCodex

Expert TSA cybersecurity compliance advisor for critical infrastructure owners and operators. Use this skill whenever a user asks about TSA Security Directives for pipelines, freight railroads, passenger rail, public transit, or bus operators; the TSA Cyber Risk Management Program (CRMP); Cybersecurity Implementation…

3 2d ago A 205 tokens original MIT

hackIDLE/skills

Skill Claude CodeCodex

Scan Terraform, Kubernetes, CloudFormation, ARM templates, and Dockerfiles for security misconfigurations using 790 Terrascan-derived policies with NIST 800-53 control mappings. Use when users need to review IaC for security issues, audit cloud configurations, check compliance posture, harden infrastructure code, or…

2 2mo ago A 85 tokens copy · 100% MIT

mesh-security

16

hackIDLE/skills

Skill Claude CodeCodex

Analyze Istio, Consul, and Linkerd service mesh configurations for security vulnerabilities with NIST 800-53 control mappings. Use when users need to audit mesh security, identify misconfigurations, check mTLS settings, review ACL policies, or prepare for FedRAMP assessments. Triggers on keywords like "mesh config"…

2 2mo ago A 95 tokens copy · 100% MIT

vaquarkhan/compliance-agent-skills

Skill Claude CodeCodex

Implements California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA)—Cal. Civ. Code §1798.100 et seq.—covering consumer rights to know, delete, correct, opt-out of sale/share, and limit use of sensitive personal information, plus DSAR workflows, privacy notices, and service provider…

2 8d ago A 173 tokens original MIT

cmmc-nist-800-171

18

vaquarkhan/compliance-agent-skills

Skill Claude CodeCodex

Implements CMMC 2.0 Level 2 assessments aligned to NIST SP 800-171 Revision 2 (110 security requirements across 14 families) for Controlled Unclassified Information (CUI) protection in the Defense Industrial Base (DIB), including SPRS score self-assessment, POA&M management, and government contract flow-down…

2 8d ago A 188 tokens original MIT

vaquarkhan/compliance-agent-skills

Skill Claude CodeCodex

Implements FedRAMP Moderate baseline assessments using NIST SP 800-53 Revision 5 controls—authorization boundary definition, System Security Plan (SSP), Plan of Action and Milestones (POA&M), and continuous monitoring (ConMon)—with Cloud Service Provider (CSP) and agency customer responsibility matrices. Trigger when…

2 8d ago A 179 tokens original MIT