{"repo":"GRCEngClub/claude-grc-engineering","free":true,"listed":false,"github":"https://github.com/GRCEngClub/claude-grc-engineering","clone":"git clone https://github.com/GRCEngClub/claude-grc-engineering.git","description":"Open-source GRC toolkit from the GRC Engineering Club. Claude Code plugins for evidence collection, SCF crosswalks, multi-framework gap reports, OSCAL workflows.","language":"JavaScript","stars":378,"topics":["agentic-ai","auditing","claude-code-plugin","cmmc","compliance","fedramp","gap-analysis","grc","hitrust","infrastructure-as-code"],"license":null,"category":"deployment-docker-iac","readme_excerpt":"claude-grc-engineering https://github.com/user-attachments/assets/a83aa297-9fba-4a7d-b56c-06f962d1ec6b Open-source GRC Engineering resource for Claude. claude-grc-engineering turns technical evidence from cloud, SaaS, code, and security tools into framework-aligned findings, gap reports, remediation guidance, evidence packages, and OSCAL workflows. It is built for the Claude ecosystem: Claude Code plugin installs first, with Claude Desktop and Claude Cowork usage supported through the same Markdown skills, command runbooks, schemas, and repository files. It is maintained by the GRC Engineering Club for people who want compliance work to behave more like engineering work: repeatable, testable, versioned, and easy to extend. Not affiliated with Anthropic. Claude, Anthropic, and related marks are property of their respective owners. What it does The toolkit is a Claude Code plugin marketplace. The same plugin skills and command runbooks are also useful in Claude Desktop and Claude Cowork when you add this repository as project context or a shared workspace. Install the pieces you need: - grc-engineer : the core automation hub for gap assessment, IaC scanning, evidence collection, remediation generation, policy generation, PR review, continuous monitoring, and multi-framework optimization. - Persona plugins: workflows for auditors, internal GRC teams, third-party risk, reporting, learning, and iterative GRC automation. - Framework plugins: reference guidance for SOC 2, NIST 800-5","default_branch":null,"files":null,"tree":[],"storefront":"/r/GRCEngClub","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/GRCEngClub/claude-grc-engineering/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}