nist-ai-rmf

Applies NIST AI RMF Core Subcategories and GenAI Profile actions to AI systems or governance questions.

46|25|Updated May 7, 2026
One-click install
npx skills add https://github.com/LegalQuants/lq-skills --skill nist-ai-rmf-legalquants
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: nist-ai-rmf
Source: https://github.com/LegalQuants/lq-skills/tree/main/skills/nist-ai-rmf
Command: npx skills add https://github.com/LegalQuants/lq-skills --skill nist-ai-rmf-legalquants

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

It helps you apply the NIST AI Risk Management Framework (AI 100-1) and the NIST AI 600-1 Generative AI Profile to a specific AI system or governance question, with verbatim Subcategory and Action IDs so your outputs are traceable to the published NIST text.

Core Features & Use Cases

  • Consult mode for fast answers: map the user’s question to the most relevant Govern/Map/Measure/Manage requirements and, for GenAI, the applicable GAI Profile risks and Suggested Actions.
  • Governance plan mode for policy building: generate a structured governance program aligned to the GOVERN function, including GenAI-specific action points when relevant.
  • Assessment mode for end-to-end impact analysis: produce a full RMF-aligned assessment that walks through Govern, Map, Measure, and Manage with a recommendation and auditable citation discipline.
  • Scope-aware Core vs GenAI overlay: uses Core Subcategories for all AI systems and adds GAI Profile actions only when the system is generative.

Quick Start

Ask for an assessment by telling the AI: Run a NIST AI RMF impact assessment for our HR resume-screening tool.

Frequently Asked Questions about nist-ai-rmf

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I apply the NIST AI RMF to a generative AI system?

To apply the NIST AI RMF to a generative AI system, the framework overlays Core Subcategories with GAI Profile risks and Suggested Actions, providing verbatim Action IDs to ensure traceable risk management and trustworthy AI governance.

What is the best way to build an AI governance plan aligned to NIST standards?

Building an AI governance plan aligned to NIST standards involves mapping requirements to the GOVERN function, generating a structured program with generative AI-specific action points and verifiable citation provenance from published NIST text.

How do I run an end-to-end AI risk impact assessment using NIST AI 100-1?

Running an end-to-end AI risk impact assessment using NIST AI 100-1 involves walking through the Govern, Map, Measure, and Manage functions to produce a full RMF-aligned assessment with auditable citations and open-item handling for missing system details.

Can I get fast answers for specific AI policy alignment questions without a full assessment?

You can get fast answers for specific AI policy alignment questions using consult mode, which maps your inquiry to the most relevant Govern, Map, Measure, or Manage requirements and applicable GAI Profile risks without requiring a full assessment.

How does NIST AI RMF handle impact assessments when system details are missing?

When system details are missing during a NIST AI RMF impact assessment, the framework enforces open-item handling to explicitly flag incomplete information while maintaining citation provenance to the extracted reference files.