Home / Claude Code skill packs

compliance-evidence-skills

Compliance evidence skills for Claude Code: integrity-checked evidence packs from GitHub, AWS and Microsoft 365 exports, mapped to ISO 27001 and SOC 2, with narratives that cite evidence or say not assessable.

Python · MIT · latest v0.1.0

What it is

Compliance evidence skills for Claude Code: build integrity-checked evidence packs from GitHub, AWS and Microsoft 365 exports, map them to ISO 27001 and SOC 2 control identifiers, and draft auditor narratives that cite evidence or say not assessable.

compliance-evidence-skills is a Claude Code plugin marketplace with one plugin, compliance-evidence, holding five skills. Each skill is a fixed procedure plus a tested Python script (standard library only). The skills tell Claude which read-only exports to take and which permission each needs; the scripts then work on the saved files: hash them into a pack with a manifest, map them to control identifiers, and draft narratives in which every evidence statement cites a file and field.

It is written for the people who prepare an ISO 27001 or SOC 2 assessment in a small or mid-sized organisation: engineers and IT administrators who own GitHub, AWS and Microsoft 365, and the security or compliance lead who has to hand evidence to an assessor. It exists because evidence is still mostly screenshots and loose exports with no record of who took them, when, or with which command, and because tools that turn an API error into a control failure (or a missing file into a pass) cost hours of argument during fieldwork. These skills keep three result states only, supported, contradicted and not assessable, and never mark a control supported without a cited evidence file and field.

No network access from the scripts, no telemetry. All inputs are exports already on disk.

/plugin marketplace add basitalisandhu/compliance-evidence-skills
/plugin install compliance-evidence@compliance-evidence-skills

Install

python3 plugins/compliance-evidence/skills/evidence-pack-builder/scripts/evidence_pack.py build tests/fixtures/exports --out /tmp/pack
python3 plugins/compliance-evidence/skills/evidence-pack-builder/scripts/evidence_pack.py verify tests/fixtures/evidence-pack/tampered-pack
python3 plugins/compliance-evidence/skills/control-map-from-exports/scripts/control_map.py /tmp/pack --framework iso27001 \
  --map plugins/compliance-evidence/skills/control-map-from-exports/references/starter-map.yaml --out /tmp/control-map.json
python3 plugins/compliance-evidence/skills/auditor-narrative-drafter/scripts/narrative.py /tmp/control-map.json --control A.8.15
python3 plugins/compliance-evidence/skills/github-change-control-evidence/scripts/github_evidence.py tests/fixtures/github/free-plan

From the README; see the full README for every option.

Releases

Topics: agent-skills, audit-evidence, aws, claude-code, claude-code-plugin, cloudtrail, compliance, compliance-automation, control-mapping, evidence-collection, github, grc, hacktoberfest, iso27001, microsoft-365, python, security-tools, soc2