
Compliance Frameworks
ContributedA reference guide explaining major security audits and compliance frameworks — what they are, who needs them, and what they cover.
Provides on-demand, structured reference guides for 22 major security audit and compliance frameworks.
What it does
When invoked with a framework name (e.g., /compliance-frameworks FedRAMP), it delivers a practitioner-focused breakdown covering what the audit is, who needs it, what it covers, and key operational details including frequency, cost, duration, and common pitfalls.
When invoked without arguments, it presents a numbered menu of all supported frameworks and asks the user to select one.
How it works
The skill uses a prompt-driven approach — no external API calls or tools required. It encodes structured guidance for each framework and generates detailed explanations following a consistent format: What It Is, Who Needs It, What It Covers, and Key Details. It covers frameworks spanning attestations (SOC 2), certifications (ISO 27001), regulations (GDPR, HIPAA), and government authorizations (FedRAMP, CMMC).