Skip to content

feat: add regulatory compliance checker #14

@leoneperdigao

Description

@leoneperdigao

Description

Implement a compliance checking module that evaluates the system architecture against quantum-relevant regulatory and standards requirements from multiple jurisdictions and industry frameworks.

Tasks

  • Government quantum guidelines:
    • NIST CNSA 2.0 (USA) — algorithm and timeline compliance
    • ANSSI (France) — quantum transition recommendations
    • BSI (Germany) — quantum-safe cryptography guidelines
    • NCSC (UK) — preparing for quantum-safe cryptography
  • Industry-specific standards:
    • PCI-DSS quantum considerations for payment systems
    • HIPAA implications for long-lived health data
    • SOC 2 cryptographic requirements and quantum readiness
    • GDPR data protection implications (long-term confidentiality)
  • Compliance gap report:
    • Per-standard compliance status (compliant, partial, non-compliant)
    • Specific non-compliant items with remediation guidance
    • Priority ranking based on regulatory deadlines
  • Compliance tracking:
    • Track compliance status over time (compare assessments)
    • Trend reporting for compliance posture
    • Deadline awareness for regulatory milestones
  • Alerting:
    • Alert on new regulatory requirements affecting the architecture
    • Monitor for updates to tracked standards
    • Integration with notification systems

References

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or requestintegrationThird-party integrations

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions