[ GRC Agents ]

Agent directory

58 live agents. Sorted by recency, then name. No paid boost.

Reset

Four MCP servers (Rules, Insights, Workflow, Assistant) that let AI agents create and execute compliance rules, query evidence and compliance posture, and build compliance workflows against the ComplianceCow platform.

evidencemonitoring

Enterprise MCP server from Comply that connects the ComplyAI financial-services compliance platform to AI tools, so authorized teams can build agentic workflows such as trade pre-clearances, policy guidance, and annual reviews.

policymonitoringaudit prep

Open-source MCP server from IBM that lets AI agents query and update IBM OpenPages GRC objects such as issues and controls over HTTP or stdio.

audit prepmonitoring

Hosted MCP server that exposes Secureframe compliance data as tools for AI assistants: controls, tests, vendors, frameworks, risks, and more.

monitoringevidencevendor riskSOC 2ISO 27001CMMC

Configurable GRC AI agents that review evidence, draft policies, score vendor risk, and fill trust questionnaires inside the Complyance platform.

evidencepolicyvendor riskquestionnaire responseSOC 2ISO 27001HIPAA

Agentic compliance graph that maps requirements, collects evidence, fills questionnaires, and watches regulatory change.

evidenceaudit prepquestionnaire responsepolicyISO 27001SOC 2GDPR

Startup SOC 2 and ISO platform with AI GRC agents for policy onboarding, control mapping, and questionnaires.

evidencepolicyquestionnaire responseaudit prepSOC 2ISO 27001

Ask-your-GRC-data copilot and questionnaire assist on the Compyl platform. Does not list the not-yet-GA Agent Library.

chat/tasksquestionnaire responsepolicySOC 2ISO 27001

KAIA is Kertos's AI guide that automates European privacy and information-security compliance workflows.

evidencepolicyaudit prepAI governanceGDPRISO 27001SOC 2

Regulatory AI agents that encode law and run compliance analyses, including a Microsoft 365 Copilot compliance agent.

policychat/tasksAI governanceSOC 2GDPR
open-source

Open-source compliance platform agent that handles requirements, docs, risks, controls, and evidence for SOC 2, GDPR, HIPAA, and ISO.

evidencepolicyaudit prepchat/tasksSOC 2GDPRHIPAA

Named agent that logs into SaaS apps, reads contracts and privacy settings, and checks them against the company's AI policy.

AI governancemonitoringpolicyISO 42001GDPR

Named regulatory compliance agent that maps obligations and monitors regulatory change.

policymonitoringGDPR

Purpose-built security questionnaire automation for SaaS teams that need to answer CAIQ-style reviews without a dedicated GRC hire.

questionnaire responseSOC 2ISO 27001

Named AI GRC agent fleet for governance, risk, and compliance workflows.

chat/tasksaudit prepmonitoringSOC 2ISO 27001

AI GRC teammates inside Scrut that evaluate evidence, fill questionnaires, score vendors, and open remediation tickets.

evidencequestionnaire responsevendor riskaudit prepSOC 2ISO 27001GDPR

Scytale's named GRC AI agent for evidence review, gap scanning, policy work, and security questionnaires.

evidencequestionnaire responsepolicyaudit prepSOC 2ISO 27001GDPR

AI-drafted security questionnaire and trust-center workflows with certified analysts reviewing answers before send.

questionnaire responseSOC 2ISO 27001

Named GRC agent that fills security questionnaires and portal reviews from a sourced knowledge base, with a complimentary trust center.

questionnaire responsevendor riskSOC 2ISO 27001

YC-backed AI agent for security, privacy, DDQ, and ESG questionnaire automation across portals and files.

questionnaire responseSOC 2ISO 27001GDPR

AI-native compliance management platform with agentic workflows for audits, evidence, and trust.

evidenceaudit prepmonitoringSOC 2ISO 27001

Agentic third-party cyber assessment surface on TrustCloud that scores vendors from outside-in and inside-out signals.

vendor riskSOC 2ISO 27001

Multi-agent GRC system with specialized control, evidence, policy, and risk agents that work on top of an existing GRC program.

evidencemonitoringpolicyaudit prepSOC 2ISO 27001NIST CSF

Named GRC agent inside Vanta that drafts policies, checks evidence, answers questionnaires, and flags vendor risk.

policyevidencequestionnaire responsevendor riskSOC 2ISO 27001GDPR

Enterprise agentic GRC platform with broad integrations and pre-mapped frameworks.

evidencemonitoringaudit prepchat/tasksSOC 2ISO 27001GDPR

General-purpose Anthropic Claude used via Skills/MCP for custom GRC workflows in enterprise teams.

chat/taskspolicyaudit prepISO 27001SOC 2GDPR

AI-assisted security questionnaire automation and trust center for B2B vendors.

vendor riskchat/tasksSOC 2ISO 27001GDPR

AI governance platform for policy, risk, and regulatory alignment across AI systems.

AI governancepolicyaudit prepEU AI ActISO 42001NIST AI RMF

Cursor's automated PR review agent for bugs and regressions; usage-metered agent runs on pull requests.

PR review

Automated evidence collection and continuous control monitoring for security and privacy frameworks.

evidencemonitoringaudit prepSOC 2ISO 27001GDPR

Dependency and reachability analysis to prioritize open-source risk for security programs.

monitoringvendor riskISO 27001SOC 2

GitHub-hosted agent that can implement tasks and open pull requests in your repositories.

PR reviewchat/tasks
SaaS

Domain-specific legal AI used by firms and in-house teams for research and drafting.

policychat/tasksGDPR

heyGRC

Listed by Better ISMS (same rules as everyone)

SaaS

GitHub App that reviews every pull request for compliance impact: flags changes that put controls, evidence, or framework posture at risk.

PR reviewISO 27001SOC 2GDPR

AI risk management and governance tooling for enterprise AI portfolios.

AI governancemonitoringEU AI ActISO 42001NIST AI RMF

GRC platform with AI-assisted workflows for controls, audits, and risk programs.

audit prepevidencepolicySOC 2ISO 27001GDPR

ISMS Copilot

Listed by Better ISMS (same rules as everyone)

SaaS

Compliance AI engine for 75+ frameworks. Chat, tasks, and account MCP so agents and practitioners run GRC work with an auditable trail.

chat/taskspolicyaudit prepISO 27001SOC 2GDPR

ISMS Copilot for Agents

Listed by Better ISMS (same rules as everyone)

SaaS

Account MCP + PAT so Claude Code, Cursor, and other agents use your ISMS Copilot workspace tools directly.

chat/taskspolicyISO 27001SOC 2GDPR

ISMS Directory MCP

Listed by Better ISMS (same rules as everyone)

open-source

MCP server that lets agents search a curated directory of human GRC services and submit listings.

chat/tasksISO 27001SOC 2GDPR
SaaS

AI legal workspace used by legal teams for document-heavy compliance and contract workflows.

policychat/tasksGDPR

AI operations agents for incident response workflows with audit-friendly operational trails.

monitoringchat/tasksDORAISO 27001SOC 2

Trust center and security review automation for vendor questionnaires.

vendor riskchat/tasksSOC 2ISO 27001GDPR

Continuous compliance automation platform for cloud-native companies across security and privacy frameworks.

evidencemonitoringaudit prepSOC 2ISO 27001GDPR

AI-powered compliance automation with expert-backed workflows for cloud-native companies.

evidenceaudit prepmonitoringSOC 2ISO 27001GDPR

AI-driven compliance audit solution that collects evidence artifacts from IT systems.

evidenceaudit prepmonitoringISO 27001SOC 2NIST CSF

AI-assisted compliance automation for evidence, questionnaires, and multi-framework programs.

evidenceaudit prepvendor riskSOC 2ISO 27001GDPR

AI-assisted static analysis triage and fix guidance for security findings in code.

PR reviewmonitoring

Security-focused code analysis and AI fix suggestions integrated into developer workflows.

PR reviewmonitoring
SaaS

Supply-chain security agent that monitors dependencies for malware and risk signals.

monitoringPR reviewISO 27001SOC 2
SaaS

AI-powered SOC 2 and EU AI Act compliance with continuous evidence collection.

evidenceaudit prepAI governanceSOC 2EU AI Act

Compliance automation with continuous monitoring for SOC 2, ISO 27001, GDPR, and more.

evidencemonitoringaudit prepSOC 2ISO 27001GDPR

End-to-end compliance platform combining AI automation with in-house audit services.

evidenceaudit prepSOC 2ISO 27001HIPAA
SaaS

AI governance software helping organizations comply with the EU AI Act and manage AI-specific risk.

AI governancepolicyaudit prepEU AI ActISO 42001

Continuous control monitoring and evidence collection automation for SOC 2, ISO 27001, and related frameworks.

evidencemonitoringaudit prepSOC 2ISO 27001GDPR

AI-assisted trust and questionnaire workflows adjacent to Vanta's compliance automation suite.

vendor riskchat/tasksSOC 2ISO 27001

Vendor risk automation with AI-assisted questionnaire and trust center workflows.

vendor riskSOC 2ISO 27001GDPR

AI-driven automation to accelerate ISO 27001 and SOC 2 for SaaS companies.

evidenceaudit preppolicyISO 27001SOC 2