Supported Frameworks
Information Security
- ISO 27001
- NIST CSF
- SOC 2 Type II
- FIPS 140-2
Finance & Payments
- PCI-DSS v4
- SOX
- DORA
Privacy
- GDPR
- HIPAA
- CCPA / CPRA
- TW-PDPA
Development Security
- OWASP Top 10
- CMMC 2.0
Asia-Pacific
- APPI (Japan)
- ISMAP (Japan)
- K-ISMS (Korea)
- PIPA (Korea)
Governance
- COBIT 2019
- ITIL v4
- TOGAF
* ForgeHelm maps your codebase against 20+ frameworks in a single scan. Custom framework rules available on Enterprise plan.
What's in a Compliance Report
Framework coverage matrix — which controls are met, partially met, or missing
Non-conformance findings linked to specific files and line numbers
Prioritized improvement recommendations with risk scoring
Risk assessment summary using ISO 31000, NIST RMF, or ISO 27005
Export as PDF, Excel, CSV, or Word in 5 languages