gc-attestation

Automate ITGC audits of access, change, backup, and logging controls.

2|Updated May 18, 2026
One-click install
npx skills add https://github.com/lm93129/claude-for-audit --skill gc-attestation
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: gc-attestation
Source: https://github.com/lm93129/claude-for-audit/tree/main/it-audit/skills/gc-attestation
Command: npx skills add https://github.com/lm93129/claude-for-audit --skill gc-attestation

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill streamlines the ITGC (Information Technology General Control) audit process by evaluating critical system environments, focusing on access management, change management, operational maintenance, backup and recovery, and logging monitoring controls.

Core Features & Use Cases

  • Access Control Assessment: Evaluates user access management processes, including user approval, high-privileged account control, and termination management.
  • Change Management Audit: Inspects change management records for completeness and compliance with policies.
  • Operational Maintenance Analysis: Assesses the operation scheduling, exception handling, and critical alert response procedures.
  • Backup and Recovery Validation: Reviews backup strategies and recovery procedures to ensure critical systems are covered and recoverable.
  • Logging and Monitoring Review: Evaluates the logging configuration and monitoring practices for security events and issues.

Quick Start

Perform an ITGC audit on the 'System X' using the gc-attestation skill and upload relevant access, change, and backup logs.

Frequently Asked Questions about gc-attestation

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate an ITGC audit for access management and change management controls?

Automate an ITGC audit by manually uploading relevant log and configuration data to evaluate access management, change management, operational maintenance, backup and recovery, and logging monitoring controls.

What is evaluated during an information technology general control audit?

An information technology general control audit evaluates critical IT system environments, specifically assessing access management, change management, operational maintenance, backup and recovery, and logging and monitoring controls.

How do I assess backup strategies and recovery procedures for critical systems?

Assess backup strategies and recovery procedures by uploading relevant configuration logs for audit evaluation to validate that critical systems are fully covered and recoverable.

Can I review logging and monitoring configurations for security events without direct system integration?

Review logging and monitoring configurations without direct integration by manually uploading log files to evaluate security event monitoring practices and issue tracking procedures.

Does the general control audit process require manual data uploads?

The general control audit process requires manual log and configuration data uploads to perform audit evaluations across access, change, and backup system environments.

What is the best way to audit high-privileged account control and termination management?

Audit high-privileged account control and termination management by uploading user access logs to evaluate the approval processes and termination controls within the IT system.