Home / kesslernity / awesome-copilot-cowork-skills · skills/risk-ethics-compliance/controls-gap-pack/SKILL.md · GitHub

controls-gap-pack skillA

controls-gap-pack is agent-read markdown (skill) from kesslernity/awesome-copilot-cowork-skills: Reads a requirement, regulation, or policy and the organisation's control descriptions, then produces a DRAFT controls-and-gap pack — the requirement broken into obligations, mapped controls, apparent coverage, gaps, and actions to assess. Never concludes compliance or that a control is effective; control owners and audit assess. Use when the user asks to map a requirement to controls or run a controls gap analysis..

Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.

What the file says

## PURPOSE

Read one requirement/regulation/policy (and, where provided, the organisation's control descriptions) and produce one DRAFT controls-and-gap pack: the requirement broken into discrete obligations, the control(s) that appear to address each, apparent coverage, gaps, actions to assess, and open questions.

This prepares a controls assessment. It never concludes the organisation is compliant, that an obligation is met, or that a control is effective — those require human assessment and testing by control owners and audit. Obligations are jurisdiction-specific and change.

Known limitation: the skill maps from the text provided; it cannot see whether a control actually operates. Coverage is "apparent" only, for owners to confirm and test.

## WHEN TO RUN

Run when the user asks to map a requirement/regulation/standard/policy to controls, or to run a controls gap analysis.

Do not run:
- To conclude the organisation is compliant, or an obligation is met.
- To assess that a control is effective or operating.
- To accept or sign off risk.

## INPUTS YOU GATHER
…

Read the whole file at its exact version.

How to install

Latest version
mdr add kesslernity/awesome-copilot-cowork-skills/controls-gap-pack@git:20260618.38724d8
Exact content
mdr add kesslernity/awesome-copilot-cowork-skills/controls-gap-pack@sha256:046a0ab9a0d402d5

Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.

Badge

mdr badge

[![mdr](https://markdownregistry.com/badge/art_ya46gx4tgy2yvq5y.svg)](https://markdownregistry.com/a/art_ya46gx4tgy2yvq5y)

1 badge views in 30 days

Versions

versioncommittedcommitsizeaudit
git:20260618.38724d8 latest2026-06-18 38724d8 5,870 BA view

Audit of the latest version

A  17 of 17 checks passed. Deterministic, no model, same answer every run.
  • pass: Frontmatter block present
  • pass: Frontmatter declares a name
  • pass: Frontmatter declares a description
  • pass: Size between 200 bytes and 200 KB (5870 bytes)
  • pass: No zero-width or bidi control characters
  • pass: No instruction hidden inside an HTML comment
  • pass: No link to an exfiltration or paste host
  • pass: No credential-shaped string
  • pass: No instruction to send local credentials anywhere
  • pass: No text hidden with inline styles
  • pass: No prompt-injection phrasing
  • pass: No curl or wget piped into a shell
  • pass: No recursive delete of root, home or parent
  • pass: No instruction to read or print local credentials
  • pass: No base64 blob over 200 characters
  • pass: No link to a raw IP address
  • pass: No script tag

Source

GitHub

kesslernity/awesome-copilot-cowork-skills · 28 stars · license CC-BY-SA-4.0 · pushed 2026-09-19 · branch main

API

GET https://markdownregistry.com/api/v1/artifacts/art_ya46gx4tgy2yvq5y
GET https://markdownregistry.com/api/v1/resolve?ref=kesslernity/awesome-copilot-cowork-skills/controls-gap-pack
GET https://markdownregistry.com/api/v1/blob/046a0ab9a0d402d530b17e4931342951e09783c062ebac164b9546a3572d968c

Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.

More from kesslernity/awesome-copilot-cowork-skills

commitment-catcher skill
kesslernity/awesome-copilot-cowork-skills · skills/daily-briefings/commitment-catcher/SKILL.md · Scans the last 24 hours of email, Teams chats and meeting transcripts for commitments in both directions, things the…
git:20260611.db4516f · audit A · 28 stars
custom-daily-brief skill
kesslernity/awesome-copilot-cowork-skills · skills/daily-briefings/custom-daily-brief/SKILL.md · Builds a role-tuned morning brief as a Word document covering emails that need replies, today's calendar, Teams…
git:20260611.db4516f · audit A · 28 stars
project-dashboard-builder skill
kesslernity/awesome-copilot-cowork-skills · skills/dashboards-microapps/project-dashboard-builder/SKILL.md · Generates a self-contained single-file HTML project dashboard (status banner, milestones, risks heat list, decisions…
git:20260611.e8784cb · audit B · 28 stars
dataset-insight-pack skill
kesslernity/awesome-copilot-cowork-skills · skills/data-analytics/dataset-insight-pack/SKILL.md · Reads a spreadsheet dataset and a question, then produces a DRAFT insight pack: a data profile, observations cited to…
git:20260916.13c92dd · audit A · 28 stars
dpia-draft-pack skill
kesslernity/awesome-copilot-cowork-skills · skills/data-privacy/dpia-draft-pack/SKILL.md · Reads a project or processing description and produces a DRAFT DPIA pack — processing description, necessity and…
git:20260618.38724d8 · audit A · 28 stars
inbox-triage skill
kesslernity/awesome-copilot-cowork-skills · skills/email-inbox/inbox-triage/SKILL.md · Sweeps the inbox, categorises every message as needs-reply-today, needs-reply-this-week, waiting-on-others, FYI or…
git:20260611.e8784cb · audit A · 28 stars
cbo-reviewer skill
kesslernity/awesome-copilot-cowork-skills · skills/executive-review/cbo-reviewer/SKILL.md · Reviews a proposal, business case, deck or plan in character as a Chief Business Officer archetype, covering commercial…
git:20260612.7dfa564 · audit A · 28 stars
cdo-reviewer skill
kesslernity/awesome-copilot-cowork-skills · skills/executive-review/cdo-reviewer/SKILL.md · Reviews a proposal, business case, deck or plan in character as a Chief Data Officer archetype, then saves a structured…
git:20260612.7dfa564 · audit A · 28 stars
cfo-reviewer skill
kesslernity/awesome-copilot-cowork-skills · skills/executive-review/cfo-reviewer/SKILL.md · Reviews a proposal, business case, deck or plan in character as a Chief Financial Officer archetype, then saves a…
git:20260612.7dfa564 · audit A · 28 stars
chro-reviewer skill
kesslernity/awesome-copilot-cowork-skills · skills/executive-review/chro-reviewer/SKILL.md · Reviews a proposal, business case, deck or plan in character as a Chief Human Resources Officer archetype, then saves a…
git:20260612.7dfa564 · audit A · 28 stars
ciso-reviewer skill
kesslernity/awesome-copilot-cowork-skills · skills/executive-review/ciso-reviewer/SKILL.md · Reviews a proposal, business case, deck or plan in character as a Chief Information Security Officer archetype…
git:20260612.7dfa564 · audit A · 28 stars
cmo-reviewer skill
kesslernity/awesome-copilot-cowork-skills · skills/executive-review/cmo-reviewer/SKILL.md · Reviews a proposal, business case, deck or plan in character as a Chief Marketing Officer archetype, producing a…
git:20260612.7dfa564 · audit A · 28 stars

Every file in kesslernity/awesome-copilot-cowork-skills

Browse by kind, by grade A, or by owner.