Revue de PSSI (skill nAIvigate)
Skill : A reusable method: instructions, procedures, sometimes scripts or templates · requires claude-code
Reviews a security policy and lists the gaps against ISO 27001:2022, with corrected wording.
The first pass before a mock audit: it finds the holes, you keep the decision.
Security reflects where data goes, requested permissions and incidents on record at the verification date. It is not a guarantee of zero risk: check the deployment mode and the connections you enable.
What it does, concretely
Reviewing an ISMS policy against the standard takes a consultant a day and usually ends in a spreadsheet. This skill does that first pass in minutes: it maps the document's chapters, matches them to the 93 Annex A 2022 controls and the main clauses, then lists every gap with a severity and a replacement wording written in the document's own style.
It ships the full ISO/IEC 27001:2022 control list as a reference, including the controls new in 2022 that older policies often miss (threat intelligence, cloud services, data leakage prevention, secure coding).
It is meant for CISOs and consultants preparing a certification, an annual review or a policy update. It does not replace an audit: it produces the CISO's starting point, never a compliance verdict.
What it offers
- ·Gap table: document passage, ISO 27001:2022 control, nature of the gap, severity, proposed wording.
- ·Three severity levels aligned with what an auditor would raise (blocking, major, minor).
- ·Built-in reference of the 93 Annex A 2022 controls and clauses 4 to 10.
- ·Corrected wording written at policy level, in the document's style.
- ·'Points to check with the organisation' section for what the text cannot settle.
In practice
- Price
- Free
- Commercial use
- Commercial use: yes
- Available on
- claude, claude-code
- Host
- claude-code
- Licence
- MIT
- FR interface
- Yes
Security and data
- Rating
- Security: nothing to flag
- Your data
- Data stays local
- Maintenance
- Active
Links and repository checked on 19 September 2026 · added on 19 September 2026