OpenAgentSkill guide

Best legal and compliance skills for AI agents

Browse skills for contract analysis, policy review, privacy checks, compliance workflows, governance notes, and document risk review.

When to use this guide

Start from the job, then shortlist the tools.

Review contracts

Use quality and freshness signals to decide whether a skill belongs in this workflow.

Summarize policy risk

Use quality and freshness signals to decide whether a skill belongs in this workflow.

Check privacy requirements

Use quality and freshness signals to decide whether a skill belongs in this workflow.

Prepare compliance notes

Use quality and freshness signals to decide whether a skill belongs in this workflow.

Shortlist

Top skills to evaluate

Compare top 4
#1KyvernoExcellent · 1007.8K stars

Unified Policy as Code

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#2Agent Governance ToolkitExcellent · 1004.1K stars

AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#3BearerExcellent · 1002.7K stars

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#4LynisExcellent · 10016K stars

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#5OpaExcellent · 10012K stars

Open Policy Agent (OPA) is an open source, general-purpose policy engine.

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#6Cloud CustodianExcellent · 1006.0K stars

Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#7SiyuanExcellent · 10044K stars

A privacy-first, self-hosted, fully open source personal knowledge management software, written in typescript and golang.

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#8LogseqExcellent · 10043K stars

A privacy-first, open-source platform for knowledge management and collaboration. Download link: http://github.com/logseq/logseq/releases. roadmap: https://logseq.io/p/NX4mc_ggEV

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#9MlflowExcellent · 10027K stars

The open source AI engineering platform for agents, LLMs, and ML models. MLflow enables teams of all sizes to debug, evaluate, monitor, and optimize production-quality AI applications while controlling costs and managing access to models and data.

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.

#10GoaccessExcellent · 10021K stars

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.

Best fit: High-confidence pick with strong adoption and healthy maintenance signals.