← Back to Skills Marketplace
113
Downloads
0
Stars
0
Active Installs
1
Versions
Install in OpenClaw
/install toolweb-compliance-management
Description
Multi-framework compliance assessment and management system for evaluating organizational adherence to security and regulatory standards.
Usage Guidance
This skill describes a remote Compliance Management API but provides no server URL, no authentication requirements, and no source/homepage. Before installing or using it: (1) Ask the publisher for the API base URL, auth method (API key/OAuth), and hosting domain; do not supply sensitive org data until you confirm the destination and TLS/ownership. (2) Prefer skills that declare required env vars (API_KEY, BASE_URL) and list a trusted source or homepage. (3) If you must test it, do so with non-sensitive, synthetic data in a sandbox. (4) If the agent ever asks to send real configuration or credentials to an unspecified endpoint, deny and investigate — that is the primary risk here.
Capability Analysis
Type: OpenClaw Skill
Name: toolweb-compliance-management
Version: 1.0.0
The skill provides a legitimate interface for a compliance management platform hosted at api.mkkpro.com, allowing users to perform assessments against frameworks like ISO 27001 and NIST CSF. The files (SKILL.md, openapi.json) describe standard API interactions for submitting organizational profiles and control responses to receive gap analyses. No indicators of data exfiltration, malicious execution, or prompt injection were found.
Capability Assessment
Purpose & Capability
The SKILL.md and openapi.json present a networked Compliance Management API (endpoints for assessments, frameworks, controls). A networked API integration normally requires a base URL and authentication (API key, token, or similar). This skill declares no required environment variables, no server URL, and no install or hosting details — which is inconsistent with the stated purpose of acting as an external API client or wrapper.
Instruction Scope
The runtime instructions and examples are scoped to submitting assessment payloads and returning assessment results. They do not instruct the agent to read unrelated local files, scan system configuration, or exfiltrate other data. No instructions request unrelated environmental context.
Install Mechanism
This is an instruction-only skill with no install spec and no code files executed on the host. That reduces disk-execution risk. The included openapi.json is a spec file only and contains no server entries.
Credentials
A multi-framework API normally needs credentials and a target server. The skill requests no environment variables, no primary credential, and no config paths. That absence is disproportionate to an API integration and leaves unclear where requests would be sent and what auth (if any) would be used. The missing credential requirements are a notable gap.
Persistence & Privilege
The skill is not marked always:true and does not request persistent system-wide configuration or privileges. It appears to be an on-demand, user-invocable instruction-only skill.
How to Use
- Make sure OpenClaw is installed (local or Docker)
- Run the install command in chat:
/install toolweb-compliance-management - After installation, invoke the skill by name or use
/toolweb-compliance-management - Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.0
Compliance Management Platform — Initial Release
- Launches a multi-framework compliance assessment and management API supporting ISO 27001, NIST CSF, SOC 2, and more.
- Enables organizations to centralize compliance evaluations, manage control responses, and generate compliance reports.
- Provides endpoints for executing assessments, retrieving framework/control metadata, and accessing comprehensive gap analysis.
- Includes robust request structure with support for organization profiles, detailed control evidence, and session tracking.
- Offers multiple pricing plans, including Free, Developer, Professional, and Enterprise tiers.
Metadata
Frequently Asked Questions
What is Compliance Management?
Multi-framework compliance assessment and management system for evaluating organizational adherence to security and regulatory standards. It is an AI Agent Skill for Claude Code / OpenClaw, with 113 downloads so far.
How do I install Compliance Management?
Run "/install toolweb-compliance-management" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.
Is Compliance Management free?
Yes, Compliance Management is completely free, licensed under MIT-0. You can download, install and use it at no cost.
Which platforms does Compliance Management support?
Compliance Management is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).
Who created Compliance Management?
It is built and maintained by ToolWeb (@krishnakumarmahadevan-cmd); the current version is v1.0.0.
More Skills