scan

Scan AWS and Azure accounts for SOC 2 compliance gaps and generate Markdown and HTML reports.

7|2|Updated Apr 3, 2026
One-click install
npx skills add https://github.com/kkmookhey/shasta --skill scan-kkmookhey
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: scan
Source: https://github.com/kkmookhey/shasta/tree/main/.claude/skills/scan
Command: npx skills add https://github.com/kkmookhey/shasta --skill scan-kkmookhey

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Run SOC 2 compliance checks across connected cloud accounts (AWS and Azure) and present findings in clear, actionable language for non-technical stakeholders. This capability helps teams quickly identify gaps in controls, align with security governance, and prepare audit-ready evidence.

Core Features & Use Cases

  • Cloud-wide scanning: Detects SOC 2 control gaps across connected AWS and Azure accounts.
  • Automated reporting: Generates concise Markdown and HTML reports with a summarized score.
  • Governance-ready outputs: Provides structured findings suitable for governance reviews and auditor requests.

Quick Start

Connect your AWS and/or Azure accounts in shasta.config.json, then run the scan to generate findings and reports.

Frequently Asked Questions about scan

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I identify SOC 2 compliance gaps across AWS and Azure cloud accounts?

To identify SOC 2 compliance gaps across AWS and Azure, run a cloud-wide scan that evaluates control statuses and generates summarized findings for governance reviews. This provides a clear compliance score and actionable outputs.

Can I generate audit-ready reports for SOC 2 cloud controls automatically?

Yes, you can automatically generate audit-ready SOC 2 reports in Markdown and HTML formats. These outputs include a computed compliance score and structured findings suitable for non-technical stakeholders and auditor requests.

What do I need to connect before running a cloud compliance scan?

Before running a cloud compliance scan, you need to configure your AWS and Azure accounts in the shasta.config.json file. Once connected, the scanner can perform a fresh scan or reuse recent results to evaluate your SOC 2 controls.

Does the SOC 2 cloud audit scan support both fresh scans and cached results?

Yes, the SOC 2 cloud audit scan supports both performing a fresh scan and reusing recent results as appropriate. This flexible approach helps teams quickly compute compliance scores and summarize control statuses without redundant checks.

What is the best way to prepare SOC 2 evidence for cloud governance reviews?

The best way to prepare SOC 2 evidence for cloud governance reviews is to run an automated scan across AWS and Azure accounts. This generates concise Markdown and HTML reports with structured findings and a summarized compliance score.