CIVITAS

Packs & Changelog

This is the registry for the public library pack pages. Each page explains library scope, public artifacts, and claim boundaries, while the proof artifacts remain under /proof/packs/*.

Pack nameFramework spineReviewer fitProof link
Vendor SecurityCIS Controls v8 family-level mappingSecurity or procurement teams reviewing a supplier baseline before onboarding or renewal./proof/packs/vendor-security
ISO 27001 ReadinessISO/IEC 27001:2022 Annex A referencesTeams preparing for an ISO 27001 programme, internal readiness push, or pre-audit evidence review./proof/packs/iso-27001
SOC 2 ReadinessAICPA TSC CC1-CC9 spineSaaS teams preparing for buyer scrutiny, trust reviews, or a future SOC 2 journey./proof/packs/soc2-readiness
NIST CSF ReadinessNIST CSF 1.1 subcategory IDsLeadership or security teams that want a broad control-language view across identify, protect, detect, respond, and recover themes./proof/packs/nist-csf
DFIR Incident ResponseDFIR lifecycle phases + NIST RS/RC crosswalkTeams strengthening incident-readiness before customer diligence, tabletop work, or external scrutiny./proof/packs/dfir-incident-response

Per-pack versions and release notes are still to be expanded; in this pass, the registry is aligned to the new public library proof pages.