Help us improve
Share bugs, ideas, or general feedback.
From shinsa
This skill should be used when the user mentions "ISO 27001", "Annex A controls", "information security controls", "ISMS controls", "compliance controls", "ISO 27001 assessment", or needs to understand specific ISO 27001:2022 control requirements for code-level compliance assessment.
npx claudepluginhub allsmog/shinsa-plugin --plugin shinsaHow this skill is triggered — by the user, by Claude, or both
Slash command
/shinsa:iso-27001-annex-aThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
Comprehensive reference for all 93 ISO 27001:2022 Annex A controls, with focus on the technological controls (A.8) that are assessable from source code. This skill provides control definitions, assessment criteria, and implementation guidance for each control.
Drafts personalized cold emails, warm intros, follow-ups, updates, and communications for investor outreach during fundraising to angels, VCs, accelerators.
Share bugs, ideas, or general feedback.
Comprehensive reference for all 93 ISO 27001:2022 Annex A controls, with focus on the technological controls (A.8) that are assessable from source code. This skill provides control definitions, assessment criteria, and implementation guidance for each control.
/shinsa:compliance-scan)/shinsa:quick-check)This skill is reference material, not the orchestrator. The command files own run planning, assessor dispatch, reviewer loops, and artifact persistence.
This skill is intentionally broader than the currently shipped ISO scan commands.
The shipped /shinsa:compliance-scan and /shinsa:quick-check commands currently produce standalone scored assessments for 14 core controls:
Additional controls in the reference files, including A.8.9, A.8.25, and A.8.31, remain useful as guidance and supporting context but are not currently emitted by the shipped commands as standalone scored results.
ISO 27001:2022 Annex A organizes 93 controls into 4 families:
| Family | Name | Controls | Code-Assessable |
|---|---|---|---|
| A.5 | Organizational | 37 | ~5 (hybrid) |
| A.6 | People | 8 | 0 (manual only) |
| A.7 | Physical | 14 | 0 (manual only) |
| A.8 | Technological | 34 | ~20 (auto/hybrid) |
Each control is categorized by how it can be assessed:
For this plugin, we focus on auto and hybrid controls.
Detailed control assessment criteria by control family:
references/a8-technological-controls.mdreferences/a5-organizational-controls.md