Anyone else have been using Claude to help them complete vendor reviews and complete DPIAs? I've been working on building and refining a Claude skill to perform a good chunk of the research and assessment based on public information and the documents I might be able to provide (SOC 2 report, pen test report, VSA, etc.), and get a consistent output for every review. It's not perfect yet and I'm still fine tuning it, but I think it's getting pretty good. I'd love to compare notes if you've done something similar. I'm happy to share the skill to anyone interested in contributing to it. And if you haven't, I'd love the feedback on the output from people more experienced than me here, and what they think might be missing. Example output :
Eventually yes, I'd love to move this into a more automated flow using Atlassian's MCP server to publish the review in Confluence and create tasks, but I'm not there yet.
Right now I'm more focused on making sure the actual review makes sense (accurate, relevant, and no hallucinations or mix-ups)
Also need to give it more context about our company so that it doesn't suggest things like connecting to Azure AD since we don't use it. 馃檪
Yes, I'm using claude. And, yes, listing the external skills that are dependencies would be useful. I just tagged you on an older thread where I shared my prompt for it.
Ah thank you! I did search to see if anyone had shared anything but I didn't find it. 馃檪
Could I also get a look into it? We have configured a few skills in our end to try and address this but it seems like yours is grabbing other interesting points.
Yes, I do use claude to help with vendor reviews! Would love to collaborate on this
Count me in as well. Would to love to see the skill you are using.
I posted it in the other thread: https://vantacommunity.slack.com/archives/C0AHQSB0J8Z/p1777581997909019?thread_ts=1776821238.193449&cid=C0AHQSB0J8Z
