Back to Skills

compliance-evidence-pack

majiayu000
Updated Yesterday
58
9
58
View on GitHub
Metageneral

About

This skill helps developers assemble compliance evidence, logs, and audit artifacts. It's used when you need to generate required documentation for security, compliance, or governance reviews. The skill produces structured outputs like implementation plans, diagrams, specs, and validation checklists.

Quick Install

Claude Code

Recommended
Plugin CommandRecommended
/plugin add https://github.com/majiayu000/claude-skill-registry
Git CloneAlternative
git clone https://github.com/majiayu000/claude-skill-registry.git ~/.claude/skills/compliance-evidence-pack

Copy and paste this command in Claude Code to install this skill

Documentation

Compliance Evidence Pack

Purpose

  • Assemble compliance evidence, logs, and audit artifacts.

Preconditions

  • Access to system context (repos, infra, environments)
  • Confirmed requirements and constraints
  • Required approvals for security, compliance, or governance

Inputs

  • Problem statement and scope
  • Current architecture or system constraints
  • Non-functional requirements (performance, security, compliance)
  • Target stack and environment

Outputs

  • Design or implementation plan
  • Required artifacts (diagrams, configs, specs, checklists)
  • Validation steps and acceptance criteria

Detailed Step-by-Step Procedures

  1. Clarify scope, constraints, and success metrics.
  2. Review current system state, dependencies, and integration points.
  3. Select patterns, tools, and architecture options that match constraints.
  4. Produce primary artifacts (docs/specs/configs/code stubs).
  5. Validate against requirements and known risks.
  6. Provide rollout and rollback guidance.

Decision Trees and Conditional Logic

  • If compliance or regulatory scope applies -> add required controls and audit steps.
  • If latency budget is strict -> choose low-latency storage and caching.
  • Else -> prefer cost-optimized storage and tiering.
  • If data consistency is critical -> prefer transactional boundaries and strong consistency.
  • Else -> evaluate eventual consistency or async processing.

Error Handling and Edge Cases

  • Partial failures across dependencies -> isolate blast radius and retry with backoff.
  • Data corruption or loss risk -> enable backups and verify restore path.
  • Limited access to systems -> document gaps and request access early.
  • Legacy dependencies with limited change tolerance -> use adapters and phased rollout.

Tool Requirements and Dependencies

  • CLI and SDK tooling for the target stack
  • Credentials or access tokens for required environments
  • Diagramming or spec tooling when producing docs

Stack Profiles

  • Use Profile A, B, or C from skills/STACK_PROFILES.md.
  • Note selected profile in outputs for traceability.

Validation

  • Requirements coverage check
  • Security and compliance review
  • Performance and reliability review
  • Peer or stakeholder sign-off

Rollback Procedures

  • Revert config or deployment to last known good state.
  • Roll back database migrations if applicable.
  • Verify service health, data integrity, and error rates after rollback.

Success Metrics

  • Measurable outcomes (latency, error rate, uptime, cost)
  • Acceptance thresholds defined with stakeholders

Example Workflows and Use Cases

  • Intake: collect requirements, select skills, produce plan and artifacts.
  • Delivery: sequence skills, validate outputs, and prepare handoff.

GitHub Repository

majiayu000/claude-skill-registry
Path: skills/compliance-evidence-pack

Related Skills

algorithmic-art

Meta

This Claude Skill creates original algorithmic art using p5.js with seeded randomness and interactive parameters. It generates .md files for algorithmic philosophies, plus .html and .js files for interactive generative art implementations. Use it when developers need to create flow fields, particle systems, or other computational art while avoiding copyright issues.

View skill

subagent-driven-development

Development

This skill executes implementation plans by dispatching a fresh subagent for each independent task, with code review between tasks. It enables fast iteration while maintaining quality gates through this review process. Use it when working on mostly independent tasks within the same session to ensure continuous progress with built-in quality checks.

View skill

executing-plans

Design

Use the executing-plans skill when you have a complete implementation plan to execute in controlled batches with review checkpoints. It loads and critically reviews the plan, then executes tasks in small batches (default 3 tasks) while reporting progress between each batch for architect review. This ensures systematic implementation with built-in quality control checkpoints.

View skill

cost-optimization

Other

This Claude Skill helps developers optimize cloud costs through resource rightsizing, tagging strategies, and spending analysis. It provides a framework for reducing cloud expenses and implementing cost governance across AWS, Azure, and GCP. Use it when you need to analyze infrastructure costs, right-size resources, or meet budget constraints.

View skill