nist

Generate NIST CSF 2.0 compliance reports with maturity tiers and PDF output.

1|Updated Mar 10, 2026
One-click install
npx skills add https://github.com/preludeorg/prelude-claude-plugin --skill nist-preludeorg
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: nist
Source: https://github.com/preludeorg/prelude-claude-plugin/tree/main/plugins/prelude/skills/nist
Command: npx skills add https://github.com/preludeorg/prelude-claude-plugin --skill nist-preludeorg

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires puppeteer, weasyprint, and includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill helps organizations assess and report on their compliance with the NIST Cybersecurity Framework (CSF) 2.0, simplifying a complex and time-consuming process.

Core Features & Use Cases

  • Interactive Assessment: Guides users through each NIST CSF 2.0 function, category, and subcategory.
  • Evidence Collection: Facilitates gathering evidence through manual input, Prelude platform data, or third-party tool exports.
  • Maturity Scoring: Assigns maturity tiers to each subcategory in collaboration with the user.
  • Report Generation: Produces a branded PDF report detailing the assessment findings, maturity scores, gaps, and recommendations.
  • Use Case: A CISO needs to prepare a NIST CSF 2.0 compliance report for an upcoming audit. This Skill will walk them through the framework, help collect evidence from their existing security tools and manual inputs, and generate a professional report.

Quick Start

Use the nist skill to start a NIST CSF 2.0 assessment for 'Example Corp'.

Frequently Asked Questions about nist

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I generate a NIST CSF 2.0 compliance report for an audit?

You can generate a NIST CSF 2.0 compliance report by interactively assessing organizational context, assigning maturity tiers, and exporting a branded PDF using Puppeteer or WeasyPrint.

What is involved in a NIST CSF 2.0 maturity assessment?

A NIST CSF 2.0 maturity assessment evaluates cybersecurity functions and subcategories by collecting evidence and assigning maturity tiers to identify compliance gaps.

How do I collect evidence for a NIST cybersecurity framework assessment?

You collect evidence for a NIST cybersecurity framework assessment via manual input, Prelude platform data, or third-party tool exports to support maturity scoring.

Do I need the Prelude CLI to perform a NIST CSF 2.0 assessment?

Yes, you need the Prelude CLI for data integration when performing a NIST CSF 2.0 assessment, alongside a PDF generation tool like Puppeteer or WeasyPrint.

Can I use WeasyPrint instead of Puppeteer for compliance reporting?

Yes, you can use WeasyPrint instead of Puppeteer for compliance reporting, as both are supported PDF generation tools for producing the final branded NIST assessment report.

What limitations exist when assessing supply chain security for NIST compliance?

Assessing supply chain security for NIST compliance requires gathering specific evidence through manual input or exports, meaning assessment depth is limited by available data sources.