compliance-evidence-collector

Collect compliance evidence from AWS, Google Drive, and Jira for audits.

1|Updated Feb 26, 2026
One-click install
npx skills add https://github.com/webrix-ai/agent-skills --skill compliance-evidence-collector-webrix-ai
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: compliance-evidence-collector
Source: https://github.com/webrix-ai/agent-skills/tree/main/skills/compliance-evidence-collector
Command: npx skills add https://github.com/webrix-ai/agent-skills --skill compliance-evidence-collector-webrix-ai

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill removes the manual scramble of gathering audit evidence, mapping it to controls, and tracking gaps across cloud and collaboration tools during compliance reviews.

Core Features & Use Cases

  • Framework Coverage: Organize evidence for SOC2, ISO 27001, and HIPAA audits.
  • Control Mapping: Link controls such as access management, change management, and risk assessment to evidence sources.
  • Evidence Collection: Pull IAM, CloudTrail, policy, sharing, and ticket data from AWS, Google Drive, and Jira.
  • Gap Detection & Remediation: Identify missing or incomplete evidence and create follow-up Jira tickets.
  • Use Case: A security team preparing for a SOC2 Type II audit can use this Skill to collect proof of access controls, compile change tickets, highlight missing quarterly reviews, and produce a reviewer-ready package.

Quick Start

Ask this Skill to gather audit evidence for your chosen framework, controls, timeline, and sources, then organize the results into an evidence package with gaps and remediation tickets.

Frequently Asked Questions about compliance-evidence-collector

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I map compliance controls to evidence sources in AWS and Jira?

Map compliance controls to evidence sources by linking access management, change management, and risk assessment controls directly to the collected AWS, Google Drive, and Jira data. This creates a structured, audit-ready evidence package.

What is the best way to prepare an audit-ready evidence package from AWS and Google Drive?

Collect compliance evidence from AWS, Google Drive, and Jira by requesting the skill to gather audit data for your chosen framework, controls, timeline, and sources. It organizes the results into an evidence package complete with gaps and remediation tickets.

Does compliance evidence collection work with AWS CloudTrail and Google Drive sharing settings?

Yes, compliance evidence collection works with AWS CloudTrail and Google Drive by pulling IAM configurations, CloudTrail logs, and document sharing settings to verify access controls and change management for SOC2 and ISO 27001 audits.

How do I identify missing evidence during a SOC2 Type II audit preparation?

Identify missing evidence during SOC2 audit preparation by performing a gap analysis on the collected data against required controls. The process highlights incomplete evidence and generates remediation tickets to track the missing items.