一键导入
compliance-frameworks
Compliance requirements for LLM applications under HIPAA, COPPA, FERPA, and GDPR, with testing methodology and evidence requirements
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Compliance requirements for LLM applications under HIPAA, COPPA, FERPA, and GDPR, with testing methodology and evidence requirements
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Complete taxonomy of 80+ attack plugins organized by category, technique, and OWASP mapping
How to identify and analyze LLM integration points across popular frameworks — OpenAI SDK, Anthropic SDK, LangChain, LlamaIndex, Vercel AI SDK
Comprehensive knowledge of the OWASP Top 10 for LLM Applications (2025), including attack mappings, detection methodology, and remediation checklists
Actionable fix patterns for LLM vulnerabilities — system prompt hardening, input validation, output filtering, and tool sandboxing
| name | Compliance Frameworks |
| description | Compliance requirements for LLM applications under HIPAA, COPPA, FERPA, and GDPR, with testing methodology and evidence requirements |
| version | 1.0.0 |
Provides expert knowledge of regulatory compliance requirements as they apply to LLM-powered applications. Used by agents to identify compliance risks, generate compliance-focused attacks, and produce audit-ready reports.
| Framework | Sector | Key Concern for LLMs |
|---|---|---|
| HIPAA | Healthcare | PHI disclosure via LLM responses, PHI in training data, lack of BAA with LLM provider |
| COPPA | Children's services | Collection of children's data via chat, age verification gaps, persistent storage of conversations |
| FERPA | Education | Student record disclosure, educational data in prompts, unauthorized access to grades/records |
| GDPR | EU users | PII processing without consent, right to erasure conflicts with training data, cross-border data transfer |