security-compliance
SOC2, HIPAA, and GDPR compliance validation with secrets scanning and regulatory documentation.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for security-compliance, derived from its capabilities.
These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.
Overview
A Claude Code plugin providing compliance subagents for SOC2, HIPAA, and GDPR validation, secrets scanning, compliance checklists, and regulatory documentation. It scans the repo for secrets and validates controls, giving it read surface over potentially sensitive config and a place in the security workflow.
Key features and capabilities
- SOC2/HIPAA/GDPR validation
- Secrets scanning
- Compliance checklists + docs
Use cases
- Validate regulatory compliance
- Scan for leaked secrets