Skill Packages
Browse ready-made AI workflow skills for document elaboration, review, and structuring.
RI&E — Risico-inventarisatie en -evaluatie (Netherlands)
Draft and validate the mandatory Risk Inventory & Evaluation (RI&E) and Plan van Aanpak under the Dutch Working Conditions Act (Arbowet Art. 5). Covers hazard identification, risk evaluation, PSA, and arbodeskundige review.
Learn MoreRisk & Control Self-Assessment (RCSA)
RCSA support aligned with COSO and Basel III. Front-line managers document risks and control effectiveness; the skill scores control strength (Automated > Manual, Preventative > Detective) and identifies optimistic bias where residual risk is low despite weak controls or thin descriptions.
Learn MoreRisk Register ISO 31000
Guided elaboration of an ISO 31000:2018-aligned risk register: organizational context, risk criteria (likelihood/impact scales and appetite), structured register entries with cause, existing controls, consequence, treatment, residual risk, implementation deadline and owner, plus automated validation of completeness and L x I consistency.
Learn MoreRisk Tolerance Quantifier
Draft and validate a Cybersecurity Risk Appetite Statement (NIST CSF 2.0 GV.OC): translate board mandates into quantifiable tolerance levels and KPIs; ensure stated appetite is supported by budget narratives.
Learn MoreRTB Notice Expert — Notice of Termination & Rent Review
Prepare and validate Notice of Termination and Rent Review documentation for Ireland under the Residential Tenancies Board (RTB). Ensures Rent Pressure Zone (RPZ) and comparable market rent rules (3 comparables, advertised within 4 weeks) are met. Includes comparable_market_rent_audit validation.
Safe Harbor Drafter (CISA CPG 5.1 VDP)
Draft and validate a Vulnerability Disclosure Policy (VDP) with CISA-aligned Safe Harbor language and RFC 9116–compliant reporting. Ensures researcher protection and clear reporting mechanism.
Learn MoreSandbox Compliance Expert
Elaboração de propostas para sandbox regulatório e contratos de inovação (CVM, BCB, SUSEP). Define critérios de saída segura e limites de operação; valida proteção ao consumidor e responsabilidade civil conforme LC 182/2021.
Learn MoreSaudi PDPL — Personal Data Protection Assessment
Draft and validate data protection compliance documentation under Saudi Arabia's Personal Data Protection Law (Royal Decree M/19 of 2021, amended 2023) and its Implementing Regulations. Covers data inventory, consent, cross-border transfers, and 72-hour breach notification.
Learn MoreSBIR/STTR Phase I Proposal Drafter
Draft complete SBIR/STTR Phase I technical proposals aligned to specific federal agency evaluation criteria. Covers technical volume, commercialization plan, work plan, and budget justification for NSF, NIH, DoD, DoE, and USDA solicitations.
Learn MoreSBOM Lifecycle Drafter
Draft and maintain the SBOM Management Procedure aligned with NIST CSF 2.0 ID.AM. Covers ingestion, validation, and monitoring of SBOMs; Vulnerability Disclosure when NVD flags a component; and developer Attestation of Security. Validates procedure and SBOM files against CycloneDX/SPDX.
Learn MoreSBOM Risk Scorer
CISA CPG 6.1 Supply Chain SBOM Review: analyze CycloneDX or SPDX SBOMs for Vulnerability Debt and gatekeeping evidence. Summarizes vulnerability debt and flags EOL and critical-CVE components for Accept/Reject decisions.
Learn MoreSBOM Vulnerability Mapper
Generate and validate a Software Bill of Materials (SBOM) and draft CRA-compliant technical documentation for connected products in the EU market. Checks software components against the NIST NVD for known critical vulnerabilities. Covers product classification, Annex I essential cybersecurity requirements, vulnerability handling, conformity assessment, and ENISA reporting readiness.
Learn More