TopRank Skills

Home / Claw Skills / Git / GitHub / Afrexai Regulatory Compliance
Official OpenClaw rules 36%

Afrexai Regulatory Compliance

Regulatory Compliance Audit

Stars

0

Installs

0

Status

ACTIVE

Visibility

PUBLIC

安装方式

直接复制以下提示词,发送给你的 AI 助手即可完成安装。

请先检查是否已安装 SkillHub 商店,若未安装,请根据 https://skillhub-1388575217.cos.ap-guangzhou.myqcloud.com/install/skillhub.md 安装 SkillHub 商店,然后安装 Afrexai Regulatory Compliance 技能。 若已安装,则直接安装 Afrexai Regulatory Compliance 技能。

Overview

Skill Key
1kalin/afrexai-regulatory-compliance
Author
1kalin
Source Repo
openclaw/skills
Version
-
Source Path
skills/1kalin/afrexai-regulatory-compliance
Latest Commit SHA
415c383d736cfaea0f59658445b1644beaa94a39

Extracted Content

SKILL.md excerpt

# Regulatory Compliance Audit

Run a full regulatory compliance audit for any business. Covers US, UK, and EU frameworks across 8 compliance domains with gap analysis, risk scoring, and remediation timelines.

## When to Use
- Annual or quarterly compliance reviews
- Pre-audit preparation (SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS)
- New market entry requiring regulatory assessment
- Board or investor due diligence on compliance posture
- Post-incident compliance gap analysis

## How It Works

### Step 1: Identify Applicable Frameworks
Based on the business profile (industry, geography, data types, revenue), determine which frameworks apply:

| Framework | Triggers |
|-----------|----------|
| SOC 2 Type II | B2B SaaS, handles customer data |
| GDPR | Any EU customer data, EU employees |
| HIPAA | Any PHI (healthcare, benefits, wellness) |
| PCI DSS | Processes, stores, or transmits card data |
| ISO 27001 | Enterprise clients requesting certification |
| SOX | Public company or preparing for IPO |
| CCPA/CPRA | >$25M revenue OR >50K CA consumers |
| NIST AI RMF | Deploying AI/ML in production |
| UK DPA 2018 | UK operations or UK customer data |
| FCA/PRA | UK financial services |

### Step 2: 8-Domain Compliance Assessment

Score each domain 1-5 (1=non-existent, 5=mature):

**Domain 1: Data Governance**
- [ ] Data classification policy (public/internal/confidential/restricted)
- [ ] Data retention schedule with legal hold procedures
- [ ] Data processing agreements with all vendors
- [ ] Cross-border transfer mechanisms (SCCs, adequacy decisions)
- [ ] Data subject rights workflow (access, deletion, portability)
- [ ] Data breach notification procedure (<72hr GDPR, state-specific US)

**Domain 2: Access Control & Identity**
- [ ] Role-based access control (RBAC) implemented
- [ ] Multi-factor authentication on all critical systems
- [ ] Privileged access management (PAM) for admin accounts
- [ ] Quarterly access reviews with evidence retention
- [ ] Automated provisi...

README excerpt

# Regulatory Compliance Audit

Run a complete regulatory compliance audit across 8 domains. Covers SOC 2, GDPR, HIPAA, PCI DSS, ISO 27001, SOX, CCPA, NIST AI RMF, UK DPA, and FCA/PRA.

Built for founders, compliance leads, and operations teams who need audit-ready compliance without a Big 4 engagement.

## What's Inside

- **Framework applicability matrix** — automatically identifies which regulations apply based on your business profile
- **8-domain assessment** with 48 control checkpoints
- **Risk scoring matrix** — Critical/High/Medium/Low with action timelines
- **90-day remediation roadmap** — week-by-week action plan
- **2026 compliance cost benchmarks** by company size ($30K to $3M+)
- **Industry-specific requirements** for 10 verticals
- **Board-ready dashboard template**
- **7 audit mistakes that cost companies millions**

## Quick Start

Tell your agent: "Run a regulatory compliance audit for [your company description]"

The skill will identify applicable frameworks, assess all 8 domains, score gaps by risk, and generate a remediation roadmap with budget estimates.

## Who This Is For

- **Startups preparing for SOC 2** — know exactly what's needed before engaging an auditor
- **Companies expanding to EU/UK** — GDPR and DPA 2018 gap analysis
- **Healthcare orgs** — HIPAA compliance checklist with BAA tracking
- **Anyone deploying AI** — NIST AI RMF and EU AI Act readiness

## Get the Full Industry Toolkit

Each industry has unique compliance requirements. Get the deep-dive context pack for yours:

🛒 **Browse industry packs** → [afrexai-cto.github.io/context-packs](https://afrexai-cto.github.io/context-packs/)
📊 **Calculate your AI ROI** → [afrexai-cto.github.io/ai-revenue-calculator](https://afrexai-cto.github.io/ai-revenue-calculator/)
🤖 **Set up your agent stack** → [afrexai-cto.github.io/agent-setup](https://afrexai-cto.github.io/agent-setup/)

**Bundles:** Playbook $27 | Pick 3 $97 | All 10 $197 | Everything $247

---

Built by [AfrexAI](https://afr...

Related Claw Skills

heyixuan2

bambu-studio-ai

★ 41

Bambu Lab 3D printer control and automation. Activate when user mentions: printer status, 3D printing, slice, analyze model, generate 3D, AMS filament, print monitor, Bambu Lab, or any 3D printing task. Full pipeline: search → generate → analyze → colorize → preview → open BS → user slice → print → monitor. Supports all 9 Bambu Lab printers (A1 Mini, A1, P1S, P2S, X1C, X1E, H2C, H2S, H2D).

capt-marbles

geo-optimization

★ 1

Generative Engine Optimization (GEO) for AI search visibility. Optimize content to appear in ChatGPT, Perplexity, Claude, and Google AI Overviews. Use when optimizing websites, pages, or content for LLM discoverability and citation.

carlulsoe

parakeet-stt

★ 0

Local speech-to-text with NVIDIA Parakeet TDT 0.6B v3 (ONNX on CPU). 30x faster than Whisper, 25 languages, auto-detection, OpenAI-compatible API. Use when transcribing audio files, converting speech to text, or processing voice recordings locally without cloud APIs.

carlzhao007

feishu-process-feedback

★ 0

飞书消息自动处理与进度反馈技能。安装后后台运行,监听飞书任务消息并自动创建独立进程处理。 在处理前后发送实时进度反馈(任务确认、进度百分比、完成通知)。 支持任务类型识别、智能解析、错误重试、并发控制、状态持久化。 使用场景:飞书自动化工作流、任务进度追踪、批量任务处理、需要实时反馈的场景。

cartoonitunes

bottyfans

★ 0

BottyFans agent skill for autonomous creator monetization. Lets AI agents register, build a profile, publish posts (public, subscriber-only, or pay-to-unlock), upload media, accept USDC subscriptions and tips on Base, send and receive DMs, track earnings, and appear on the creator leaderboard. Use this skill when an agent needs to monetize content, interact with fans, manage a creator profile, handle payments in USDC, or operate as an autonomous creator on the BottyFans platform.

camopel

arxivkb

★ 0

Local arXiv paper manager with semantic search. Crawls arXiv categories, downloads PDFs, chunks content, and indexes with FAISS + Ollama embeddings. No cloud API keys required — everything runs locally.