Evidence-only corpus & MCP server for Information Security & Cybersecurity control frameworks — exact control citations, version lineage, cross-framework mappings, provenance, and explicit gaps. It does not answer questions; your agent retrieves the evidence and decides.
| Framework | Version | Controls | Chunks | Mappings |
|---|---|---|---|---|
| CIS Critical Security Controls ciscontrols | v8.1 · current | 171 | 171 | 565/565 |
| COBIT Governance and management objectives cobit | 2019 · current | 276 | 276 | — |
| CSA Cloud Controls Matrix csaccm | v4.1 · current | 224 | 224 | — |
| ISO/IEC 27001 Information security management systems (ISMS) requirements iso27001 | 2022 · current | 140 | 140 | 93/93 |
| ISO/IEC 27002 Information security controls iso27002 | 2022 · current | 97 | 97 | 93/93 |
| ISO/IEC 27017 Information security controls for cloud services iso27017 | 2015 · current | 176 | 176 | — |
| ISO/IEC 27018 Protection of PII in public clouds acting as PII processors iso27018 | 2019 · superseded | 120 | 120 | — |
| NIST SP 800-53 Security and Privacy Controls nist80053 | r5 · current | 1216 (-182) | 1216 | 843/843 |
| NIST Cybersecurity Framework nistcsf | 2.0 · current | 225 (-91) | 225 | 2635/2868 |
| PCI Data Security Standard pcidss | v4.0.1 · current | 366 | 366 | — |
| SOC 2 Trust Services Criteria (AICPA TSC) soc2tsc | 2017 · current | 393 | 393 | — |
| TCVN 11930 Basic requirements for securing information systems by security level tcvn11930 | 2017 · current | 290 | 290 | 17/17 |
| TCVN 14423 Cyber security requirements for critical information systems tcvn14423 | 2025 · current | 249 | 249 | 22/22 |
| Metric (open-corpus lane) | Accepted floor | Last measured |
|---|---|---|
| recall@8 | 66% | 86.3% |
| MRR@8 | 44% | 66.3% |
| current-version | 98% | 100% |
| abstention | 90% | 96.6% |
Adversarially-verified eval on the 205-case golden set (v6); the same numbers the quality_gaps tool serves. The framework-filtered lane measures higher — the guide tool explains when to filter.
A.5.1, AC-2(3), Req 8.3.6 — never paraphrased references.
Superseded text never served as current; amendments tracked.
4501+ typed edges: NIST OLIR, CIS workbooks, structural derivation.
Abstention, unresolved edges, quality_gaps — the corpus tells you what it can't answer.
guide | Playbook: scope, citation forms, query tips, the evidence contract |
corpus_status | Live per-framework counts and coverage (the numbers on this page) |
search | Hybrid retrieval — dense + BM25, RRF-fused, framework/version filters, abstention |
document | Citation lookup: body, amendments, mapping edges both ways, version lineage |
quality_gaps | What the corpus cannot answer: unresolved edges, deferred docs, caveats, eval floors |
The MCP surface at https://compliary.danny.vn/mcp is authenticated (OAuth 2.0 with PKCE and dynamic client registration); unauthenticated requests receive 401.
In claude.ai (Settings → Connectors) or chatgpt.com (Settings → Connectors, developer mode): add a custom connector with that URL — the OAuth metadata is discovered automatically and the sign-in form appears. Only the maintainer's credential is authorized.
Licensed framework text is served only to the authenticated maintainer. Everyone else self-deploys their own instance — the project ships the pipeline and MCP server, not the licensed documents.