Evidence needing work

Your evidence library sorted into four workable buckets, so an audit-prep sweep or a renewal plan starts from a list rather than a hunt.

PluginAreaAccess
drata-grc-skillsCompliance & Audit ReadinessRead-only

Purpose

  • Groups evidence into needs-artifact, automated-but-failing, renewal overdue and renewal due soon.
  • Calls out evidence mapped to no control.
  • Flags items missing an owner, renewal schedule, artifact or description.

Access: This skill cannot change anything in Drata.

MCP tools used

MCP toolLevelOAuth scope
Get CompanyReadread:company
List EvidenceReadread:evidence
Search ControlsReadread:controls
Search Monitoring TestsReadread:monitor-test

This skill uses every scope listed above; without them it fails partway through. What any tool returns is bounded by your Drata role as well as the scope — see MCP Server setup.

Run it

Copy
Copied
/plugin marketplace add drata/drata-claude-plugin
/plugin install drata-grc-skills@drata

Then run the skill by name:

Copy
Copied
/drata-grc-skills:drata-evidence-identify-gaps

Or ask for it in your own words:

  • "what's broken in our evidence library"
  • "renewal planning"

Before you start

  • Connect the Drata MCP server. See MCP Server setup.
  • Your MCP OAuth configuration must grant the scopes behind the tools listed above.

Related skills

  • Fix evidence — Work through evidence gaps from a single menu with live counts.
  • Evidence freshness — How current your evidence library is — the share that is valid against what needs an artifact, is expiring soon, or has expired — and why evidence goes stale.