Skip to main content

auditoria-skills-mcp

mcp-name: io.github.marcelinero/auditoria-skills

Model Context Protocol (MCP) server exposing 20 internal-audit SKILLs grounded in globally accepted standards (IIA, COSO, NIST, ISO, IFRS, COBIT, ACFE). SKILLs are written in Spanish — the working language of the target audience.

Zero-install — one command, no repo cloning, no path configuration.

PyPI License: CC BY-SA 4.0 SKILLs


Quickstart

Claude Desktop

Add to claude_desktop_config.json:

  • macOS: ~/Library/Application Support/Claude/claude_desktop_config.json
  • Windows: %APPDATA%\Claude\claude_desktop_config.json
{
  "mcpServers": {
    "auditoria-skills": {
      "command": "uvx",
      "args": ["auditoria-skills-mcp"]
    }
  }
}

Restart Claude Desktop. No repo cloning, no absolute paths.

Claude Code (CLI)

claude mcp add auditoria-skills -- uvx auditoria-skills-mcp

Prerequisite: uv

# macOS / Linux
curl -LsSf https://astral.sh/uv/install.sh | sh

# Windows (PowerShell)
powershell -ExecutionPolicy ByPass -c "irm https://astral.sh/uv/install.ps1 | iex"

Mantener actualizado

uvx resuelve la versión en cada ejecución desde PyPI. Para forzar la última versión publicada:

# Forzar última versión (recomendado tras una actualización de marcos)
uvx auditoria-skills-mcp@latest

# Si quedó una versión vieja en caché, limpiarla
uv cache clean auditoria-skills-mcp

Cuando un marco de referencia se revisa (COSO, NIST, IIA, ISO…), se publica una nueva versión en PyPI y queda registrada en el CHANGELOG. Si detectas que un estándar fue actualizado y el SKILL no lo refleja, abre un issue — no hace falta escribir código.


Personalizar para tu entidad

Los SKILLs son Markdown + YAML — editables, versionables, y reutilizables.

Opción 1: Adaptar localmente (sin PRs)

# Clona el repo
git clone https://github.com/marcelinero/auditoria-skills-mcp.git
cd auditoria-skills-mcp

# Edita los SKILLs en ./auditoria_skills_mcp/data/skills/
# Ejemplo: ajusta matriz de controles en auditoria_skills_mcp/data/skills/procesos/evaluacion-controles/SKILL.md

# Ejecuta localmente
uv run python -m auditoria_skills_mcp

Esta es tu copia adaptada a tu contexto (matriz interna, normativa local, procedimientos propios). No requiere aprobación ni PRs.

Opción 2: Proponer mejoras genéricas (con PRs)

Si mejoras algo reutilizable para otros auditores, abre un Pull Request:

  • Claridad o completitud de un SKILL.
  • Actualización por cambio en estándar (COSO 2023, NIST 2.0, ISO nuevo).
  • Nuevo SKILL alineado con un estándar global.

Ver CONTRIBUTING.md para detalles.


Ciclo de vida de los SKILLs

Nivel Qué es Quién Control
Canónico Versión oficial en PyPI Mantenedor Centralizado, sigue estándares globales
Local Adaptado a tu entidad Descentralizado, sin tocar lo común
Comunitario Mejoras genéricas aceptadas PR + revisión Se fusionan a main si pasan criterios

Available tools

Tool Description
list_skills List all 20 SKILLs with type, category, and anchor standards
get_skill Load the full content of a SKILL by name
search_skills Filter by type (proceso/especialidad) and/or framework (ISO, NIST, IIA…)

Included SKILLs

Process SKILLs — cross-cutting (8)

SKILL Anchor standards
planeacion-basada-riesgos IIA, COSO ERM, ISO 31000
evaluacion-controles COSO IC-IF, IIA, SOX 404
muestreo NIA/ISA 530, AICPA
papeles-trabajo NIA/ISA 230, IIA
comunicacion-hallazgos IIA Standards
seguimiento-recomendaciones IIA Standards
aseguramiento-calidad IIA, IIA QA Manual
analitica-datos GTAG 16, ISACA

Specialty SKILLs — by domain (12)

SKILL Anchor standards
auditoria-financiera NIA/ISA, NIIF/IFRS, SOX, COSO IC-IF
auditoria-operativa IIA, ISO 9001, INTOSAI
auditoria-tecnologia-informacion COBIT 2019, ITAF, ISO 27001:2022
auditoria-forense ACFE, NIA 240, FATF
auditoria-cumplimiento ISO 37301, ISO 37001:2025
auditoria-esg-sostenibilidad ISSB IFRS S1/S2, GRI, TCFD, SASB, CSRD/ESRS (post-Ómnibus)
auditoria-ciberseguridad NIST CSF 2.0, ISO 27001/27002:2022, CIS v8.1
auditoria-inteligencia-artificial ISO/IEC 42001, NIST AI RMF, EU AI Act
auditoria-calidad ISO 9001, ISO 19011
auditoria-ambiental ISO 14001, ISO 14064, GHG Protocol
auditoria-gestion-desempeno IIA, INTOSAI ISSAI, COSO ERM
auditoria-continua GTAG 3, AICPA, ISACA

Usage examples

Load the auditoria-ciberseguridad SKILL and help me plan
an audit based on NIST CSF 2.0.
Which SKILLs in the catalog apply to ISO standards?
I'm doing a compliance audit for ISO 37301.
Load the relevant SKILLs and build the engagement plan.

SKILLs catalog

This repository is the canonical source of the catalog. The 20 SKILLs live in auditoria_skills_mcp/data/skills/ — plain Markdown + YAML, readable directly on GitHub.

Issues and contributions (new SKILLs, framework updates) → open an issue.


Acerca de / About

Español: Servidor MCP con 20 SKILLs de auditoría interna redactadas en español neutro, ancladas a normas globales (IIA, COSO, NIST, ISO, IFRS, COBIT, ACFE). Cubre procesos transversales (planeación, muestreo, papeles de trabajo) y especialidades (financiera, TI, forense, ESG, ciberseguridad, IA y más).


License

CC BY-SA 4.0

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

auditoria_skills_mcp-2.2.3.tar.gz (99.8 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

auditoria_skills_mcp-2.2.3-py3-none-any.whl (225.4 kB view details)

Uploaded Python 3

File details

Details for the file auditoria_skills_mcp-2.2.3.tar.gz.

File metadata

  • Download URL: auditoria_skills_mcp-2.2.3.tar.gz
  • Upload date:
  • Size: 99.8 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: uv/0.12.0 {"installer":{"name":"uv","version":"0.12.0","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Ubuntu","version":"24.04","id":"noble","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":true}

File hashes

Hashes for auditoria_skills_mcp-2.2.3.tar.gz
Algorithm Hash digest
SHA256 9a39dbb9c8b58768d3cbd4e7e454d1dee2f5c258502822a7741088d50ee0cb05
MD5 906fbb068e89aa42e12523b551a9d984
BLAKE2b-256 741de2c795236125da3f3d8794a3c732362512cda9390824a89c75cabf374cbd

See more details on using hashes here.

File details

Details for the file auditoria_skills_mcp-2.2.3-py3-none-any.whl.

File metadata

  • Download URL: auditoria_skills_mcp-2.2.3-py3-none-any.whl
  • Upload date:
  • Size: 225.4 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: uv/0.12.0 {"installer":{"name":"uv","version":"0.12.0","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Ubuntu","version":"24.04","id":"noble","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":true}

File hashes

Hashes for auditoria_skills_mcp-2.2.3-py3-none-any.whl
Algorithm Hash digest
SHA256 0fcc59ca7534891e5b43dd6f6bbe6b593e68cd98e7e2a858096699e7cd258fcb
MD5 0f4e4cf9437786ab7110babc86d14845
BLAKE2b-256 9a1e80088ed16c4797a09dfa6e7e2d9f114ea16ab69fa80c2762675cbfdc0dd2

See more details on using hashes here.

Release history Release notifications | RSS feed

This release

2.2.3 This release

2 files

2.2.2

2 files

2.2.1

2 files

2.1.0

2 files

2.0.0

2 files

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page