policy-gen

Generate ISO 27001 policy documents from the SoA and control mappings.

Updated Apr 28, 2026
One-click install
npx skills add https://github.com/gombing/ISO27001Agent --skill policy-gen-gombing
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: policy-gen
Source: https://github.com/gombing/ISO27001Agent/tree/main/policy-gen
Command: npx skills add https://github.com/gombing/ISO27001Agent --skill policy-gen-gombing

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Policy generation for ISO 27001 is time-consuming and error-prone; this skill automates producing audit-ready policies from the SoA and existing templates, ensuring consistency and client-specific customization.

Core Features & Use Cases

  • Generates policy documents aligned to Annex A controls based on the SoA.
  • Uses reference templates when available and falls back to built-in templates when absent.
  • Manages client branding, versioning, approval blocks, and audit-readiness across the policy lifecycle.

Quick Start

Load the engagement brief, then run the policy-gen to generate the required policies.

Frequently Asked Questions about policy-gen

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate ISO 27001 policy generation for audit readiness?

Automate ISO 27001 policy generation by loading your engagement brief, Statement of Applicability, and reference materials to produce audit-ready documents aligned to Annex A controls.

What is the process for generating compliance documentation from a Statement of Applicability?

Generating compliance documentation from a SoA involves reading control mappings and applying templates to output policies that satisfy Clause 7.5 requirements with structured headers and metadata.

Can I customize generated ISO 27001 policies with client branding and version control?

Yes, you can customize ISO 27001 policies with client branding, versioning, and approval blocks, ensuring traceability and consistency across the compliance documentation lifecycle.

Do I need existing templates to generate ISO 27001 Annex A control policies?

No, you do not need existing templates to generate ISO 27001 Annex A control policies; the system falls back to built-in templates when reference templates are absent.

How do I ensure audit readiness and traceability in compliance documentation?

Ensure audit readiness and traceability in compliance documentation by using automated policy generation that structures headers, metadata, and approval blocks according to SoA mappings.