dora

Analyze EU financial entity compliance with DORA ICT risk frameworks.

811|169|Updated Mar 16, 2026
One-click install
npx skills add https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance --skill dora-sushegaad
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: dora
Source: https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance/tree/main/plugins/dora/skills/dora
Command: npx skills add https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance --skill dora-sushegaad

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) and assets (resource) components.

What problem does it solve?

This Skill provides expert guidance on DORA (EU Digital Operational Resilience Act) compliance for financial entities, ensuring regulatory requirements are understood and met effectively.

Core Features & Use Cases

  • Regulatory Guidance: Offers comprehensive insights into DORA Articles and RTS/ITS standards.
  • Compliance Checklist: Supports preparation for ICT risk management, incident reporting, and third-party oversight.
  • Use Case: A financial institution uses this skill to verify whether their ICT contracts include all mandatory provisions before renewal to ensure compliance.

Quick Start

Ask the skill to review your ICT third-party contracts against DORA requirements.

Frequently Asked Questions about dora

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What is DORA compliance and how does it impact EU financial entities?

DORA compliance requires EU financial entities to establish ICT risk management frameworks, incident reporting procedures, and third-party oversight to meet regulatory standards. It ensures digital operational resilience across financial operations.

How do I create a DORA compliance checklist for ICT risk management?

To create a DORA compliance checklist, analyze regulatory articles and RTS/ITS standards to identify requirements for ICT risk management, incident reporting, and third-party oversight. This ensures all necessary documentation and procedures are prepared.

Does DORA require specific provisions in ICT third-party contracts?

DORA requires specific mandatory provisions in ICT third-party contracts to ensure proper third-party oversight and risk management. You can review existing contracts against DORA requirements to verify compliance before renewal.

What are the DORA incident reporting requirements for financial institutions?

DORA incident reporting requirements mandate that financial institutions document and report ICT-related incidents through established procedures. Understanding the relevant articles ensures incidents are managed and reported to meet EU standards.

Can I use this guidance for third-party risk oversight under EU financial regulation?

You can use this guidance to navigate third-party risk oversight under EU financial regulation by analyzing DORA articles and compliance checklists. It helps verify contracts and procedures meet the necessary third-party oversight standards.

What's the best way to prepare for a DORA compliance audit?

The best way to prepare for a DORA compliance audit is to systematically review your ICT risk frameworks, incident management procedures, and third-party contracts against DORA articles and RTS/ITS standards to identify and address gaps.