11 regulatory reports. Pre-filled. Signed. Audit-ready.
NIS2, GDPR, EU AI Act, ISO 27001, ISO 42001, NIST AI RMF, NIST CSF 2.0, EU CRA, SOC 2, HDS, PCI-DSS, each incident triggers the right document, Ed25519-signed, defensible before ANSSI or a third-party auditor.
Early Warning 24h
NIS2 Art.23Initial notification within 24h, auto pre-filled
72h Report
NIS2 Art.23Intermediate update with indicators of compromise
Final Report
NIS2 Art.23Full analysis, root causes, actions taken, recommendations
GDPR Article 33
RGPDCNIL breach notification, auto PII detection + CISO override
NIST SP 800-61
NISTCSF 2.0 format, US federal agencies compatible
ISO 27001
ISO 27001:2022A.5.24-A.5.28 controls, classification, response, lessons learned
Checklist Art.21
NIS2The 10 mandatory security measures, live score per measure
Executive Report
ManagementNon-technical board summary, business impact, residual risks
Technical Report
RSSI / SOCDetailed forensics, IOCs, MITRE ATT&CK timeline, blast radius
Audit Trail
Legal proofHash-chained immutable log, every ThreatClaw action logged, signed, timestamped
EU AI Act
EU 2024/1689 Art.12High-risk AI inventory · logging · gaps · 2026-08-02 deadline
ISO 42001
AI Management System2023 AI standard, 8 Annex A controls (policy, life cycle, third-party)
NIST AI RMF
2025 Revision4 Govern/Map/Measure/Manage functions, shadow AI explicitly named
AI Governance Whitepaper
Corporate · 15 pagesProcurement-ready document · inventory + 4 frameworks + roadmap
- ×CISO writes NIS2 reports manually after each incident
- ×Audit trail scattered across 5 tools, no signed timestamping
- ×Risk of missing items on the Art.21 10-measure checklist
- ×During audit, evidence is hunted in Slack logs
- →Document pre-filled as soon as the incident is classified, operator validates
- →Single Ed25519 hash chain, exportable as evidence
- →Live Art.21 checklist, live per-measure score
- →During audit, auditor downloads the PDF + signed audit-trail
The operator validates, signs, exports. Everything stays self-hosted, with cryptographic audit trail included.
ThreatClaw speaks your auditor's language.
11 frameworks covered live, scores computed each cycle from open findings and alerts.