All skills
simota avatar

/oath

@8e1f365
by shingo imotasimota/agent-skills85 stars
15

Auditing regulatory compliance (SOC2/PCI-DSS/HIPAA/ISO 27001): maps requirements, checks controls, designs audit trails, implements Policy as Code. Use when compliance auditing is needed.

Use this Skill: https://skilld.dev/gh/simota/agent-skills/oath

This session only. Nothing lands on disk.

referencehandoff-formats.md

≈788 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Oath Handoff Formats

Inbound Handoffs

SENTINEL_TO_OATH_HANDOFF

SENTINEL_TO_OATH_HANDOFF:
  from: Sentinel
  findings:
    - id: "[finding ID]"
      type: "[vulnerability | misconfiguration | secret_exposure]"
      severity: "[critical | high | medium | low]"
      location: "[file:line or resource]"
      description: "[what was found]"
  request: "Map findings to regulatory requirements and assess compliance impact"

CLOAK_TO_OATH_HANDOFF

CLOAK_TO_OATH_HANDOFF:
  from: Cloak
  privacy_controls:
    - control: "[control name]"
      status: "[implemented | partial | missing]"
      data_types: ["PII", "ePHI", "cardholder_data"]
      regulations: ["GDPR", "CCPA", "HIPAA"]
  request: "Integrate privacy control status into broader compliance framework assessment"

CANON_TO_OATH_HANDOFF

CANON_TO_OATH_HANDOFF:
  from: Canon
  standards_context:
    - standard: "[OWASP | WCAG | ISO 25010]"
      findings: "[relevant technical standard findings]"
  request: "Interpret technical standard findings in regulatory compliance context"

ATLAS_TO_OATH_HANDOFF

ATLAS_TO_OATH_HANDOFF:
  from: Atlas
  architecture:
    components: ["[component list]"]
    data_flows: ["[data flow descriptions]"]
    trust_boundaries: ["[boundary descriptions]"]
  request: "Assess architecture against regulatory requirements and identify control gaps"

Outbound Handoffs

OATH_TO_BUILDER_HANDOFF

OATH_TO_BUILDER_HANDOFF:
  from: Oath
  framework: "[SOC2 | PCI-DSS | HIPAA | ISO 27001]"
  requirement: "[specific requirement reference]"
  implementation_pattern:
    type: "[audit_logging | access_control | encryption | data_retention]"
    description: "[what to implement]"
    acceptance_criteria:
      - "[criterion 1]"
      - "[criterion 2]"
  priority: "[critical | high | medium | low]"
  evidence_needed: "[what auditor expects to verify]"

OATH_TO_BEACON_HANDOFF

OATH_TO_BEACON_HANDOFF:
  from: Oath
  monitoring_requirements:
    - control_id: "[regulatory control reference]"
      metric: "[what to monitor]"
      threshold: "[alert threshold]"
      frequency: "[check frequency]"
      alert_severity: "[critical | warning | info]"
  dashboard_requirements:
    - panel: "[compliance posture | control health | evidence freshness]"
      data_source: "[where to query]"

OATH_TO_SCRIBE_HANDOFF

OATH_TO_SCRIBE_HANDOFF:
  from: Oath
  document_type: "[policy | procedure | evidence_package | compliance_matrix]"
  framework: "[SOC2 | PCI-DSS | HIPAA | ISO 27001]"
  content:
    title: "[document title]"
    sections: ["[section list]"]
    control_references: ["[control IDs]"]
  audience: "[auditor | management | engineering]"

OATH_TO_GEAR_HANDOFF

OATH_TO_GEAR_HANDOFF:
  from: Oath
  ci_cd_gates:
    - gate_name: "[compliance gate name]"
      policy_file: "[OPA/Rego policy path]"
      enforcement: "[block | warn]"
      frameworks: ["SOC2", "PCI-DSS"]
      requirements: ["[specific requirement references]"]
  integration_point: "[pre-commit | pre-merge | pre-deploy | post-deploy]"

Source: SKILL.md on GitHub

1 warning1mo3 checks · Risk SAFE
  • Gen Agent Trust Hub1mo

    The skill provides a comprehensive framework for regulatory compliance (SOC2, PCI-DSS, HIPAA, ISO 27001). It maps frameworks to controls, designs audit trails, and implements policy-as-code patterns. No malicious behavior or data exfiltration attempts were detected.

  • Socket1mo

    No alerts

  • Snyk1mo

    Risk: MEDIUM · 1 issue

Signed by skilld at 8e1f365. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 2 days ago.

Activeupdated last month

README badge

README badge for simota/agent-skills/oath