By GRCEngClub
Connect to your Okta org with a read-only API token to scan authentication policies, MFA enrollment, password rules, session settings, admin users, and logs for FedRAMP/NIST/SOC2/PCI compliance. Emit standardized security findings, setup idempotent YAML config, and check connector status.
Query Okta for authentication policies, MFA, password policy, session settings, and admin accounts. Emits schema-conformant findings.
Configure the okta-inspector connector — Okta domain and API token. Idempotent.
Report configuration state, token validity, and last-run freshness for okta-inspector.
Own this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimOwn this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimBased on adoption, maintenance, documentation, and repository signals. Not a security audit or endorsement.
npx claudepluginhub grcengclub/claude-grc-engineering --plugin okta-inspectorDeploy a serverless trust center to publish your company's compliance posture. Supports AWS deployment with S3, CloudFront, Lambda, DynamoDB, Cognito, and WAF.
FedRAMP Rev 5 Plugin - Traditional authorization path with SSP/SAP/SAR/POA&M documentation and NIST 800-53 Rev 5 control mapping
SOC 2 Compliance Plugin - Trust Service Criteria expertise, Type I/II assessment support, and control mapping
NIST 800-53 Plugin - Control families, baseline selection (Low/Moderate/High), and FedRAMP alignment
DORA Plugin - EU Digital Operational Resilience Act for financial entities with ICT risk management (effective January 2025)
GRC Internal Plugin - Policy management, risk registers, and compliance tracking for internal GRC teams
GRC (Governance, Risk, and Compliance) domain knowledge — frameworks, controls, audits, evidence, ConMon, cross-framework mappings, document review, and operational workflows. Cloud-agnostic.
Skills and plugins to accelerate security workflows with the Orca Cloud Platform
Check infrastructure compliance (SOC2, HIPAA, PCI-DSS)
Comprehensive skill pack with 66 specialized skills for full-stack developers: 12 language experts (Python, TypeScript, Go, Rust, C++, Swift, Kotlin, C#, PHP, Java, SQL, JavaScript), 10 backend frameworks, 6 frontend/mobile, plus infrastructure, DevOps, security, and testing. Features progressive disclosure architecture for 50% faster loading.
v9.44.1 — Patch release for Gemini environment/version detection and qwen auth gating. Run /octo:setup.