.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/grcengclub/claude-grc-engineering
home/skills/grcengclub/claude-grc-engineering
grcengclub avatar

grcengclub/claude-grc-engineering

28 skills · 1 total installs

View on GitHub
$npx skills add grcengclub/claude-grc-engineering
SkillInstalls
ch-fadp-expertSwiss Federal Act on Data Protection (nFADP) expert. Deep knowledge of the revised 2023 Swiss FADP including voluntary DSO, risk-based breach notification,…1academic-research-companionGuide a research project through the full academic lifecycle — from raw idea to concrete research question, literature grounding, methodology, writing,…—au-apra-cps-234-expertAPRA CPS 234 expert for Australian prudential information security.—aws-inspector-expertExpertise in evaluating AWS accounts for compliance — what checks are meaningful, which SCF controls they map to, and how to interpret aws CLI output.—azure-inspector-expertExpertise in evaluating Azure subscription findings from azure-inspector and mapping them to SCF controls.—ccm-expertCSA CCM expert for cloud security. Deep knowledge of Cloud Security Alliance Cloud Controls Matrix including 197 controls, 17 domains, CAIQ questionnaire,…—cis-expertCIS Controls v8 expert for baseline security. Deep knowledge of 18 controls, 153 safeguards, Implementation Groups (IG1/IG2/IG3), and practical implementation…—cmmc-assessment-objectivesVerbatim reference for all 320 NIST 800-171A Rev 2 assessment objectives, plus the Rev 2 → Rev 3 control crosswalk.—cmmc-expertCMMC v2.0 expert for DoD contractors. Covers NIST 800-171 Rev 2 (14 families, 110 controls), SPRS scoring, POA&M rules, 32 CFR Part 170, DFARS clauses,…—crowdstrike-inspector-expertInterpret CrowdStrike Falcon findings for sensor coverage, policy visibility, and host group scoping.—cyber-essentials-plus-expertUK NCSC Cyber Essentials Plus (CE+) v3.3 Danzell expert. Reference-depth framework plugin with assessment, scope determination, and evidence checklist — backed…—datadog-inspector-expertInterpret datadog-inspector findings and translate Datadog monitoring, audit, log-retention, SSO, and RBAC results into GRC evidence and remediation.—dora-expertDORA expert for EU financial entities. Deep knowledge of Digital Operational Resilience Act including 5 pillars, ICT risk management, incident reporting,…—drata-inspector-expertInterpret drata-inspector findings generated from drata-cli workflows and turn Drata control, monitor, evidence, personnel, and integration posture into GRC…—essential8-expertEssential 8 expert for Australian cyber security. Deep knowledge of ACSC Essential Eight mitigation strategies including 8 strategies, 3 maturity levels,…—eu-nis2-expertEU NIS2 Directive (Directive (EU) 2022/2555) expert. Reference-depth knowledge of essential vs important entity classification, Article 20 governance, the…—fedramp-20x-expertFedRAMP 20X modernization expert. Provides guidance on Key Security Indicators (KSIs), continuous monitoring automation, machine-readable policies, and the new…—fedramp-ssp-expertExpertise on FedRAMP SSP authoring — what the DOCX templates contain, what OSCAL 1.2.0 SSP looks like for FedRAMP, how this plugin fits alongside Compliance…—gcp-inspector-expertExpertise in evaluating GCP projects for compliance — what checks are meaningful, which SCF controls they map to, and how to interpret gcloud output.—github-inspector-expertExpertise in evaluating GitHub repositories for compliance — what checks are meaningful, which SCF controls they map to, and how to interpret gh CLI output.—okta-inspector-expertExpertise in evaluating Okta configurations for compliance — policies, MFA, session management, admin accounts, lifecycle.—poam-automation-expertExpertise in FedRAMP POA&M lifecycle management, FedRAMP 20x VDR generation, and vulnerability classification using CISA KEV, EPSS, N-ratings, LEV/IRV, and…—slack-inspector-expertInterpret slack-inspector findings, explain Slack API coverage limits, and turn Slack workspace posture results into control evidence or remediation.—snowflake-inspector-expertInterpret Snowflake account usage findings for MFA, network policies, masking/row access policies, session timeout, and retention.—splunk-inspector-expertInterpret splunk-inspector findings and translate Splunk retention, RBAC, audit, search ACL, and auth posture into compliance evidence and remediation.—tenable-inspector-expertInterpret Tenable vulnerability-management findings for scan coverage, credentialed scans, vulnerability age, and scan access visibility.—testssl-inspector-expertInterpret testssl-inspector normalized findings, recommend remediations, and tie evidence back to SCF anchor controls plus SOC 2 / NIST 800-53 r5 / PCI DSS…—wiz-inspector-expertUse wiz-inspector when Wiz CNAPP is the source of cloud posture, vulnerability, toxic-combination, or inventory evidence.—