CSOAI-ORG

Governance Engine MCP

Community CSOAI-ORG
Updated

Unified AI governance engine MCP — orchestrates 13 regulatory frameworks with signed audit receipts and Stripe-tier access.

MCP RegistryPyPI

PyPIDownloadsGitHub starsLicense: MIT

Governance Engine MCP

62 AI governance tools across 13 regulatory frameworks in one MCP server.

EU AI Act · DORA · NIS2 · CRA · GDPR · CSRD · HIPAA · SOC 2 · ISO 42001 · ISO 27001 · NIST AI RMF · PCI DSS · UK AI Bill

MEOK AI Labs

Install · Tools · Pricing · Attestation API

Why This Exists

Most compliance teams run separate audits for each regulation. A fintech deploying AI needs DORA + EU AI Act + NIS2 + GDPR simultaneously. Running four separate tools means four skill sets, four invoices, and four months of consultant time.

This MCP orchestrates all 13 frameworks from a single Claude prompt. One audit covers every regulation your product touches. Each finding gets an HMAC-signed attestation your auditor can verify independently.

Install

pip install meok-governance-engine-mcp

Tools

Tool Framework What it does
run_unified_audit All 13 Cross-framework compliance sweep
classify_risk_eu_ai_act EU AI Act Article 6 risk tier classification
assess_dora_resilience DORA 5-pillar ICT resilience assessment
check_nis2_obligations NIS2 Essential/important entity obligations
evaluate_cra_requirements CRA Annex IV security requirements
run_gdpr_dpia GDPR Data protection impact assessment
check_hipaa_safeguards HIPAA Administrative/technical/physical safeguards
assess_soc2_controls SOC 2 Trust Service Criteria evaluation
check_iso42001 ISO 42001 AI management system assessment
generate_ai_bom NIST/CycloneDX AI bill of materials
sign_audit_receipt All HMAC-SHA256 signed attestation

Example

Prompt: "Run a unified governance audit on our customer-facing chatbot.
It processes EU personal data, is deployed by a German bank,
and uses GPT-4 as the backbone model."

Result: Cross-framework report covering EU AI Act (high-risk, Annex III),
DORA (ICT third-party risk), NIS2 (essential entity), GDPR (DPIA required),
CRA (default security settings). Each finding signed with attestation cert.

Pricing

Tier Price What you get
Free £0 10 calls/day — unified audit + risk classification
Pro £199/mo Unlimited + HMAC-signed attestations + verify URLs
Enterprise £1,499/mo Multi-tenant + co-branded reports + webhooks

Subscribe to Pro · Enterprise

Attestation API

Every Pro/Enterprise audit produces a cryptographically signed certificate:

POST https://meok-attestation-api.vercel.app/sign
GET  https://meok-attestation-api.vercel.app/verify/{cert_id}

Zero-dep verifier: pip install meok-attestation-verify

Links

License

MIT

MCP Server · Populars

MCP Server · New