← Back to list

compliance-management
by spjoshis
Modular Claude plugins for agent-based expertise and reusable skills across software development and Agile. Easily extend, share, and automate best practices for modern development.
⭐ 1🍴 0📅 Dec 30, 2025
SKILL.md
name: compliance-management description: Master compliance management with GDPR, SOC 2, ISO 27001, audit preparation, and regulatory requirements.
Compliance Management
Ensure compliance with security regulations and standards through proper controls, documentation, and audit preparation.
When to Use This Skill
- Audit preparation
- Compliance certification
- Risk assessments
- Policy development
- Control implementation
- Vendor assessments
- Compliance reporting
- Regulatory requirements
Core Concepts
1. GDPR Compliance Checklist
# GDPR Compliance Checklist
## Lawful Basis
- [ ] Document lawful basis for processing
- [ ] Obtain consent where required
- [ ] Provide clear privacy notice
## Data Subject Rights
- [ ] Right to access (data export)
- [ ] Right to rectification (data correction)
- [ ] Right to erasure (data deletion)
- [ ] Right to portability (data download)
- [ ] Right to object (opt-out)
## Data Protection
- [ ] Encryption in transit (TLS 1.2+)
- [ ] Encryption at rest
- [ ] Access controls
- [ ] Data minimization
- [ ] Retention policies
## Accountability
- [ ] Privacy by design
- [ ] Data Protection Impact Assessment (DPIA)
- [ ] Data processing agreements (DPAs)
- [ ] Breach notification process (<72 hours)
- [ ] Data protection officer (if required)
## Documentation
- [ ] Record of processing activities
- [ ] Privacy policy
- [ ] Cookie policy
- [ ] Data breach procedures
2. SOC 2 Control Framework
# SOC 2 Trust Service Criteria
## Security (Required)
- Access controls
- Encryption
- Firewall management
- Intrusion detection
- Vulnerability management
- Incident response
## Availability
- System monitoring
- Backup procedures
- Disaster recovery
- Capacity planning
## Processing Integrity
- Data validation
- Error handling
- Quality assurance
## Confidentiality
- Access restrictions
- Encryption
- Non-disclosure agreements
## Privacy
- Consent management
- Data retention
- Third-party sharing
Best Practices
- Gap analysis - Current vs required state
- Document policies - Clear, comprehensive
- Implement controls - Technical and operational
- Train staff - Awareness and procedures
- Continuous monitoring - Ongoing compliance
- Regular audits - Internal and external
- Remediation tracking - Close gaps systematically
- Evidence collection - Audit-ready documentation
Resources
- GDPR.eu: Official GDPR resource
- SOC 2 Academy: SOC 2 compliance guide
- ISO 27001 Toolkit: Implementation guide
Score
Total Score
60/100
Based on repository quality metrics
✓SKILL.md
SKILL.mdファイルが含まれている
+20
○LICENSE
ライセンスが設定されている
0/10
✓説明文
100文字以上の説明がある
+10
○人気
GitHub Stars 100以上
0/15
✓最近の活動
3ヶ月以内に更新
+5
○フォーク
10回以上フォークされている
0/5
✓Issue管理
オープンIssueが50未満
+5
○言語
プログラミング言語が設定されている
0/5
✓タグ
1つ以上のタグが設定されている
+5
Reviews
💬
Reviews coming soon
