Agent skill · Business & Finance

iso42001

Expert ISO 42001 AI Management System (AIMS) compliance advisor. Use this skill whenever a user asks about ISO/IEC 42001:2023, AI governance, AI management systems, AI risk assessment, AI system impact assessment, Annex A controls for AI, Statement of Applicability for AI systems, AI policy, responsible AI, AI lifecycle management, AI incident management, AI transparency, AI bias, AI certification readiness, or any topic related to implementing or auditing an AI Management System. Also trigger for questions like "how do I become ISO 42001 certified?", "what controls does ISO 42001 require?", "

Sushegaadgithub.com/SushegaadGitHub ↗
claude-codeMIT
Install
npx skills add Sushegaad/Claude-Skills-Governance-Risk-and-Compliance --skill iso42001 --agent claude-code

Same command for any agent — swap --agent for codex, cursor, copilot.

Facts
Files in the skill folder: 4
SKILL.md size: 14 KB
Bundled scripts: none
Path: plugins/iso42001/skills/iso42001/SKILL.md
Open the folder on GitHub →
Where it comes from
Stars: 801
Language: HTML

Weekly change comes from our own snapshots, not the repository page — it measures attention, not adoption.

From the SKILL.md

# ISO 42001 AI Management System (AIMS) Skill > **Last verified:** 2026-07-03 You are an expert ISO/IEC 42001:2023 Lead Auditor and AIMS implementation consultant. You assist organisations — whether AI providers, AI users, or both — with implementing, auditing, and certifying an AI Management System (AIMS) under ISO/IEC 42001:2023. --- ## How to Respond Always clarify the organisation's role if not stated — **AI provider** (develops/deploys AI), **AI user** (integrates third-party AI), or **both** — as this determines which controls and processes apply most directly. Match your output to the task type: | Task | Output Format | |------|--------------| | Gap analysis | Table: Clause/Control ID \| Requirement \| Status 🔴/🟡/🟢 \| Evidence Needed \| Gap Notes | | AIMS scope definition | Structured narrative: boundaries, AI systems in scope, roles | | AI risk/impact assessment | Risk register table or structured narrative with likelihood × severity | | Policy generation | Full structured policy with document control block, scope, objectives, review date | | Control implementation guidance | Purpose → Requirements → Implementation Steps → Evidence → Audit Tips | | SoA for AI | Table: Co

What's inside
Steps it walks through
  1. How to Respond
  2. Standard Overview
  3. Who It Applies To
  4. Key Unique Elements vs Other ISO Standards
  5. Clause Structure (Mandatory — Clauses 4–10)
  6. Core Workflows
  7. 1. Gap Assessment (Most Common Starting Point)
  8. 2. AI System Impact Assessment (AISIA)
  9. 3. AI Risk Assessment
  10. 4. Statement of Applicability (SoA) for AI
  11. 5. Policy Generation
  12. Certification Pathway
  13. Stage 1 Audit (Documentation Review)
  14. Stage 2 Audit (Implementation Verification)
Ships with 3 files
  • references/iso42001-ai-risk-assessment.md
  • references/iso42001-clauses-requirements.md
  • references/iso42001-controls-annex-a.md
More from Claude-Skills-Governance-Risk-and-Compliance
All skills →
About this skill
What does the iso42001 skill do?

Expert ISO 42001 AI Management System (AIMS) compliance advisor. Use this skill whenever a user asks about ISO/IEC 42001:2023, AI governance, AI management systems, AI risk assessment, AI system impact assessment, Annex A controls for AI, Statement of Applicability for AI systems, AI policy, responsible AI, AI lifecycle management, AI incident management, AI transparency, AI bias, AI certification readiness, or any topic related to implementing or auditing an AI Management System. Also trigger for questions like "how do I become ISO 42001 certified?", "what controls does ISO 42001 require?", "

How do I install it?

Run `npx skills add Sushegaad/Claude-Skills-Governance-Risk-and-Compliance --skill iso42001 --agent claude-code` — it drops the skill into your project so the agent can pick it up. Swap the --agent value for codex, cursor or copilot if you use one of those.

Where does this skill come from?

From Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, a repository with 801 stars. We read it straight from the repository tree rather than a submitted listing, so what you see here is what is actually published.

Is a popular skill a good skill?

Not necessarily. Stars measure attention, not adoption — a repository can trend for a week and be abandoned. That is why we show the weekly change from our own snapshots next to the total, instead of a single flattering number.

Keep going