Supported Frameworks
Information Security
- ISO 27001
- NIST CSF
- SOC 2 Type II
- FIPS 140-2
Finance & Payments
- PCI-DSS v4
- SOX
- DORA
- Basel III (tech risk)
Privacy
- GDPR
- HIPAA
- CCPA / CPRA
- TW-PDPA
Development Security
- OWASP Top 10
- CMMC 2.0
- SLSA
- CIS Controls
Asia-Pacific
- APPI (Japan)
- ISMAP (Japan)
- K-ISMS (Korea)
- PIPA (Korea)
Governance
- COBIT 2019
- ITIL v4
- TOGAF
- ISO 38500
* ForgeHelm maps your codebase against 20+ frameworks in a single scan. Custom framework rules available on Enterprise plan.
What's in a Compliance Report
Framework coverage matrix — which controls are met, partially met, or missing
Non-conformance findings linked to specific files and line numbers
Prioritized improvement recommendations with risk scoring
Risk assessment summary using ISO 31000, NIST RMF, or ISO 27005
Export as PDF, Excel, CSV, or Word in 5 languages