MCP Compliance

by grafana

4 stars
154 downloads
Not rated
GitHub

About

An mcp server to support compliance operations in AI agents

Details

Author
grafana
GitHub stars
4
Downloads
154
Categories
Other

- CLI tools for processing and querying FedRAMP baseline data
- MCP server exposing compliance data to LLM agents
- Tools: get_control, search_controls, list_control_families, get_control_evidence_guidance
- Supports FedRAMP Rev 5 HIGH and MODERATE baselines
- Provides evidence guidance for specific controls

Clone the repository, run make deploy-local to build and deploy the binary, then configure your agent (Cursor or Claude Desktop) to use the MCP server. Detailed instructions are in the Getting Started Guide.

MCP Compliance

A project for compliance that provides CLI tools and an MCP server for agents to interact with compliance data.

Overview

The FedRAMP Compliance MCP Server is designed to support users throughout their compliance journey, which consists of three main phases:

1. Understanding - Learning about security controls, their requirements, and how they apply to your system
2. Implementing - Designing and implementing controls in your system to meet compliance requirements
3. Evidencing - Collecting and documenting evidence to demonstrate compliance with controls

This project provides tools for working with FedRAMP compliance data, including:

1. CLI tools for processing and querying FedRAMP baseline data
2. An MCP server that exposes compliance data to LLM agents

Roadmap

This project is missing the automation of evidence collection. There needs to be a way to securely store what may be sensitive data in a shared location that provides the proper ACLs and data protection. This is intended to be added in a future hackathon or additional roadmap time.

Easy Button Quick Start

For the quickest setup:

```bash

No reviews yet — be the first

Sign in to leave a review

Use Google, GitHub, or an email account so ratings stay tied to real people.

Email sign in

No reviews posted yet.