CIS Compliance Mapper

Maps your Lansweeper inventory against all 153 CIS Controls v8.1.2 safeguards, so you know exactly what’s evidenced, what’s a gap, and what still needs a human.

The CIS Compliance Mapper skill uses Lansweeper’s asset, software, and vulnerability data — or an uploaded inventory export — to classify all 153 CIS Controls v8.1.2 safeguards as Evidenced, Review, Gap, No data, or Manual. It auto-fills every safeguard the data can actually support, flags concrete shortfalls like EOL software, missing antivirus, unencrypted disks, or dormant accounts, and leaves process/policy/training controls honestly marked Manual rather than overstating coverage. The output is a filled compliance workbook and a branded executive HTML report, scoped to whichever Implementation Group (IG1, IG2, IG3, or ALL) you choose.

Why CIS Compliance Mapper Matters Here

  • GRC & Compliance perspective

    Can we actually prove this to an auditor?”
    Evidence: which of the 153 safeguards does our inventory data really support, not just claim.
    Defensibility: a workbook and report that names its data source honestly, including where the answer is “no data” or “manual.”

  • IT & Security perspective

    “What do we need to go fix?”
    Gaps: the concrete shortfalls the assessment surfaces — EOL software, missing AV, unpatched CVEs, unencrypted disks, stale accounts.
    Scope: which Implementation Group actually applies to us right now.

Requirements

Lansweeper MCP

https://mcp.lansweeper.com/mcp

Lansweeper plan

Starter, Pro, Enterprise

LLM

Claude 3.5+, Gemini, ChatGPT, Copilot

Step by step setup guide

Step 1 — Download
Download the skill package for your platform. Select Claude, ChatGPT, Gemini, or Copilot and the corresponding package downloads automatically.

Step 2 — Install

  • Claude: install as a plugin/skill in Claude Desktop or Code.
  • ChatGPT: install as an app (Developer Mode / Apps SDK).
  • Gemini: (Antigravity): load its SKILL.md and bundled files into your agent’s skill folder. Note: this package is draft/unverified per its own conversion notes — sanity-check the connector-probing steps against what’s actually exposed in your environment before relying on results.
  • Copilot: import it as a solution in Power Platform / Copilot Studio (Solutions > Import solution) — this creates the “CIS 8.1 Compliance Mapper” agent.

Step 3 — Connect Lansweeper (or provide data another way)

  • Claude: connect the Lansweeper MCP connector, or plan to upload an inventory export / request a blank framework instead.
  • ChatGPT: connect Lansweeper MCP — EU or US endpoint per your tenant.
  • Gemini (Antigravity): connect a Lansweeper MCP connector separately, or use the file-upload/blank-framework path.
  • Copilot: open the agent and connect the Lansweeper MCP connector under its Tools.

Step 4 — Ask

  • Claude: “give me a CIS 8.1 compliance report” or “which CIS safeguards can we evidence?”
  • ChatGPT: trigger with $cis-compliance-mapper or “assess my environment against CIS Controls v8.1.2.”
  • Gemini (Antigravity): “map CIS controls to our inventory.”
  • Copilot: “map CIS controls to Lansweeper.” Confirm whether it can actually produce the workbook/report file, or only a chat-based assessment, before promising that deliverable to a customer