Compliance frameworks delivered to AI agents. Nizh gives your agent read access to your organization's compliance program — SOC 2, ISO 27001, CMMC 2.0, NIST, and more — as MCP tools, so it can check posture, read a control's objectives before changing code, and record where evidence lives.
This config will be passed to Cursor on install. Inspect `command`, `args`, and `env` before continuing.
What the agent can do
get_compliance_summary — current posture for a project and framework
list_controls / search_controls / get_control — requirement text, objectives, and recorded evidence
list_projects / whoami — what this connection can see
attest_control — append an attestation carrying references (commit SHA, PR or ticket URL) and short text
How it works
Remote server at <https://mcp.nizh.com/mcp> (streamable HTTP). OAuth 2.1 sign-in; one connection per organization.
Every tool call is audited in a hash chain your team can review in the portal.
No files are ever stored. Nizh records where proof lives (a commit, a ticket), never the proof itself — no uploads, no attachments, no code bodies.
Works with Claude, Cursor, VS Code, and any MCP client that supports remote OAuth servers. Sign up at nizh.com.