Executive briefing
A board, executive, audit-committee or QBR view of live posture — headline metrics, framework readiness and top risks, for one workspace or rolled up across the organization.
| Plugin | Area | Access |
|---|---|---|
| drata-grc-skills | Reporting & Stakeholder Communications | Read-only |
Purpose
- Reports headline metrics, framework readiness and top risks.
- Rolls up across workspaces with a per-workspace scorecard.
- Detects issues repeating across workspaces.
Access: This skill cannot change anything in Drata.
Note: Point-in-time only. Drata exposes no history, so this reports where things stand today — never a trend or a change since last period.
MCP tools used
| MCP tool | Level | OAuth scope |
|---|---|---|
| Get Company | Read | read:company |
| List Workspaces | Read | read:workspace |
| Search Controls | Read | read:controls |
| List Requirements | Read | read:framework |
| Search Monitoring Tests | Read | read:monitor-test |
| Search Risks | Read | read:risk |
| List Vendors | Read | read:vendor |
| Search Personnel Compliance | Read | read:personnel |
This skill uses every scope listed above; without them it fails partway through. What any tool returns is bounded by your Drata role as well as the scope — see MCP Server setup.
Run it
/plugin marketplace add drata/drata-claude-plugin
/plugin install drata-grc-skills@drataThen run the skill by name:
/drata-grc-skills:drata-executive-reportOr ask for it in your own words:
- "board deck numbers"
- "exec summary of our compliance posture"
Before you start
- Connect the Drata MCP server. See MCP Server setup.
- Your MCP OAuth configuration must grant the scopes behind the tools listed above.
Related skills
- What needs attention today — A cross-domain briefing of everything needing attention right now — failing controls and tests, high open risks, expired evidence, overdue vendor reviews, non-compliant personnel.