mcp-server-for-oscal and compliant-llm
These are complements: OSCAL tools provide standardized compliance frameworks that a compliant-llm agent would use to validate and document its security posture across deployments.
About mcp-server-for-oscal
awslabs/mcp-server-for-oscal
OSCAL tools for AI agents
Implements an MCP server exposing OSCAL schema inspection and validation tools, enabling AI agents to generate compliant GRC artifacts by querying bundled NIST schemas and models. Uses stdio transport with local-only operation and SHA-256 file integrity verification of all bundled content at startup. Includes a standalone Strands Agents-based OSCAL agent for autonomous compliance workflows.
About compliant-llm
fiddlecube/compliant-llm
Build Secure and Compliant AI agents and MCP Servers. YC W23
Provides security testing across 8+ attack vectors (prompt injection, jailbreaking, context manipulation) and validates compliance against NIST, ISO, OWASP, GDPR, and HIPAA frameworks through automated scanning. Integrates with major LLM providers via LiteLLM and includes an interactive dashboard for visualizing test results and generating detailed compliance reports for end-to-end AI system validation.
Related comparisons
Scores updated daily from GitHub, PyPI, and npm data. How scores work