From grc-tprm
Analyzes vendor security questionnaire responses for completeness, red flags, gaps, and follow-up questions. Supports SIG, CAIQ, HECVAT, HITRUST CSF, and custom formats.
How this skill is triggered — by the user, by Claude, or both
Slash command
/grc-tprm:questionnaire-analyzerThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
Analyzes vendor security questionnaire responses.
Analyzes vendor security questionnaire responses.
npx claudepluginhub grcengclub/claude-grc-engineering --plugin grc-tprmConducts vendor security assessments evaluating posture, risks, and generating reports with recommendations. Supports onboarding, periodic reviews, incident response, and due diligence.
Qualify vendors/suppliers for GxP-relevant software/services. Covers risk classification, audit approaches, quality agreements, SLA review, and monitoring. Useful for new vendor selection, cloud onboarding, or regulatory compliance.