vendor-due-diligence-patrick-munro
lawve-ai/awesome-legal-skillsRisk-based vendor assessment framework for IT service providers, technology vendors, and third-party partners under DORA, NIS2, GDPR. Provides three-phase…
Scores out of 100 · grade A
2026-08-13Works
40% of the score100/100
- Loads cleanly: valid frontmatter, required fields present, no dangling references.
Maintained
25% of the score94/100
- no commits in the last 12 weeks
- no license file
Adopted
20% of the score38/100
- 641 stars on the source repo.
Documented
15% of the score73/100
- 1,947 words with worked examples.
- Ships 2 bundled files.
Install
npx skills add lawve-ai/awesome-legal-skills/vendor-due-diligence-patrick-munroWhat the check found
| Finding | What it means |
|---|---|
| No license | The repository ships no license file, so the reuse terms are unclear. |
What it says it does
Risk-based vendor assessment framework for IT service providers, technology vendors, and third-party partners under DORA, NIS2, GDPR. Provides three-phase process (Initial Screening / Detailed Assessment / Final Evaluation), six-dimension risk scoring (Financial/Operational/Compliance/Security/Reputational/Strategic) with weighted matrices, full DORA Art. 28-30 contractual checklist, NIS2 Art. 21(2) security measures enumeration, GDPR Art. 28 documentation checks, red flags per dimension, trigger-based review criteria, and document templates. Use when: (1) Evaluating new vendors or technology providers, (2) Conducting critical ICT third-party due diligence under DORA, (3) Performing supply chain security assessment under NIS2, (4) Creating vendor onboarding documentation, (5) Establishing ongoing vendor monitoring, (6) Assessing concentration risk, or (7) Generating executive vendor risk reports.
Also in lawve-ai/awesome-legal-skills
| Artifact | Score | What the check found | Type | Reach | Last commit |
|---|---|---|---|---|---|
| customs-trade-law-onur-kafkaslawve-ai/awesome-legal-skills | No license | Skill | 641 stars | 6 days ago | |
| eu-ai-act-transparency-assessor-oliver-schmidt-prietzlawve-ai/awesome-legal-skills | No license | Skill | 641 stars | 6 days ago | |
| eu-data-act-oliver-schmidt-prietzlawve-ai/awesome-legal-skills | No license | Skill | 641 stars | 6 days ago | |
| gdpr-breach-sentinel-oliver-schmidt-prietzlawve-ai/awesome-legal-skills | No license | Skill | 641 stars | 6 days ago | |
| litigacion-latam-joselyne-garcia-montesdeocalawve-ai/awesome-legal-skills | No license | Skill | 641 stars | 6 days ago | |
| matter-intake-scoping-scott-margettslawve-ai/awesome-legal-skills | No license | Skill | 641 stars | 6 days ago |
Other writing & docs skills
Browse all| Artifact | Score | What the check found | Category | Reach | Last commit |
|---|---|---|---|---|---|
| docxanthropics/skills | No license | Writing & docs | 175,275 installs | today | |
| vercel-optimizevercel-labs/agent-skills | No license | Writing & docs | 54,920 installs | today | |
| writing-skillsobra/superpowers | clean | Writing & docs | 171,278 installs | 2 days ago | |
| algorithmic-artanthropics/skills | No license | Writing & docs | 75,255 installs | today | |
| update-docsvercel/next.js | clean | Writing & docs | 142k stars | today | |
| writing-plansobra/superpowers | clean | Writing & docs | 226,365 installs | 2 days ago |
Put this measurement in your README
A badge carrying how many listings this index holds from the repository and how many pass every static structural check. It reads from this index every time somebody loads your page, so it changes when the measurement changes and there is nothing to keep up to date. Free, no account, and the value is not something you or we can set by hand.
[](https://skillworks.kynth.studio/?q=lawve-ai%2Fawesome-legal-skills)Would rather not hotlink us? Every badge is also served in shields.io’s endpoint schema, so shields renders the image and your readers never talk to our domain:
Published by Toolproof, the masthead over this index and eight others. The method behind the number is at toolproof.kynth.studio/methodology, and the whole thing is readable as JSON with no key at /api.
