From grc-auditor
Validates audit evidence artifacts including screenshots, logs, configurations, and policies for completeness, timeliness, relevance, and authenticity against control requirements. Useful for SOC 2 compliance reviews.
How this skill is triggered — by the user, by Claude, or both
Slash command
/grc-auditor:evidence-validatorThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
Analyzes and validates evidence artifacts submitted for audit review.
Analyzes and validates evidence artifacts submitted for audit review.
Generates evidence review memos with:
When reviewing evidence for SOC 2 CC6.1 (Logical Access):
npx claudepluginhub grcengclub/claude-grc-engineering --plugin grc-auditorCollects, organizes, and validates audit evidence for ISO 27001 and SOC 2 using API-first CLI commands. Produces timestamped, auditor-ready evidence packages.
Automates SOC 2 audit prep: assesses Trust Service Criteria controls (CC1-CC9), gathers evidence from docs/logs/IaC, identifies gaps, generates readiness reports.
Prepare for compliance audits by collecting evidence, organizing documentation, and coordinating with auditors.