CtrlK
BlogDocsLog inGet started
Tessl Logo

iso42001-specialist

ISO/IEC 42001:2023 AI Management System (AIMS) specialist for compliance teams running internal audits. Three decisions: (1) Where are the gaps against Clauses 4-10 and what do we close first? (2) What goes in the AI risk register and which Annex A controls treat each risk? (3) What's the 12-month internal audit plan that satisfies Clause 9.2? Use when preparing for certification, scoping internal audit cycles, or onboarding AI systems into an existing ISMS (27001) / QMS (13485) program. NOT an executive AI strategy skill (see chief-ai-officer-advisor). NOT EU AI Act compliance (see compliance-team-eu-ai-act).

75

Quality

93%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

The risk profile of this skill

The canonical home for this skill is iso42001-specialist in alirezarezvani/claude-skills

SKILL.md
Quality
Evals
Security

Quality

Content

86%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured, highly actionable skill body that pairs executable commands with properly delegated one-level-deep references. Minor conciseness redundancy and the absence of explicit feedback loops keep two dimensions at 4 rather than 5.

Suggestions

Collapse the three 'NOT a...' boundary paragraphs (lines 23-27) into a single compact 'Out of scope' line, since the description already carries these disambiguations.

Add an explicit validate->fix->retry loop to at least Workflow 1 (e.g., 'Re-run aims_gap_analyzer.py after remediation; if any clause still scores partial/missing, reassign owner and repeat').

DimensionReasoningScore

Conciseness

Mostly lean and domain-focused, but the three 'NOT a...' paragraphs re-expand boundary statements already present in the description, and a few asides ('Concept drift is not a one-time event') could be trimmed.

4 / 5

Actionability

Copy-paste-ready commands cover all three decisions with both embedded-sample and file-input variants, and a concrete output template specifies the exact artefact structure.

5 / 5

Workflow Clarity

Four workflows have clear numbered sequences with checkpoints (confirm >=1 Annex A control, auditor independence, management signoff), but lack explicit validate->fix->retry feedback loops for error recovery.

4 / 5

Progressive Disclosure

The body is an overview with summary tables inline, delegating full detail to four real one-level-deep reference files, each resolving to a single decision, plus a clearly signaled References navigation section.

5 / 5

Total

18

/

20

Passed

Description

100%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

An exemplary description that crisply defines three concrete decisions, gives explicit 'Use when' triggers with natural synonyms, and draws clear boundaries against adjacent skills. Every dimension lands at the top anchor.

DimensionReasoningScore

Specificity

Lists multiple concrete actions across three named decisions — gap analysis against Clauses 4-10, AI risk register with Annex A control mapping, and a 12-month Clause 9.2 audit plan — giving comprehensive coverage rather than vague language.

5 / 5

Completeness

Explicitly states both the 'what' (three concrete decisions) and the 'when' ('Use when preparing for certification, scoping internal audit cycles, or onboarding AI systems...') with concrete trigger phrases.

5 / 5

Trigger Term Quality

Comprehensive natural terms with synonyms (ISO/IEC 42001:2023 / AIMS / AI Management System, certification, internal audit cycles, ISMS 27001 / QMS 13485) that a compliance practitioner would naturally say.

5 / 5

Distinctiveness Conflict Risk

Occupies a clear niche (ISO 42001 AIMS internal-audit compliance) and explicitly disambiguates adjacent skills via 'NOT an executive AI strategy skill' and 'NOT EU AI Act compliance', minimizing conflict risk.

5 / 5

Total

20

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
alirezarezvani/claude-skills
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.