v0.6.0 — April 26, 2026
🆕 New Skills (3)
CMMC 2.0 Cybersecurity Maturity Model Certification — Expert advisor for DoD contractors; covers all three CMMC levels (Foundational, Advanced, Expert), 110 NIST SP 800-171 practices, Level 2 self-assessment vs. C3PAO third-party assessment, POA&M eligibility, SPRS scoring, and OSC/OSA/C3PAO role guidance.
NIST AI RMF AI Risk Management Framework — Full coverage of NIST AI RMF 1.0 and AI RMF Playbook; all four core functions (GOVERN, MAP, MEASURE, MANAGE), AI risk taxonomy (bias, explainability, security, privacy, safety), trustworthy AI characteristics, tiered risk profiles, and sector-specific guidance.
SWIFT CSP Customer Security Programme — Expert CSCF v2025 advisor for SWIFT member institutions; all 31 controls (23 mandatory + 8 advisory), all architecture types (A1/A2/A3/A4/B), KYC-SA attestation workflow, hardware MFA token requirements, critical patch SLA, and incident response obligations under Control 7.1.
📊 Eval Suite Expansion
- Test cases expanded from 70 → 75, assertions from 350 → 375 (5 new SWIFT CSP evals: architecture scoping, MFA hardware tokens, gap assessment, KYC-SA attestation, incident response)
- Updated benchmark: 95% with-skill / 81% baseline / +14 pts delta / +50 additional assertions passing vs. baseline
🌐 GitHub Pages UX Improvements
- Skills header redesigned — replaced the 15-framework run-on sentence with a clean responsive grid (5 cols → 3 cols → 2 cols at smaller screen sizes)
- Skill cards sorted by number — CMMC #13, NIST AI RMF #14, SWIFT CSP #15 now display in correct numeric order
- Second LinkedIn testimonial added — Shubham Mishra, Security Engineering @ Juniper Networks: "genuine progress toward interactive, intelligence-driven compliance"
🔧 Internal
- Bumped all 15
plugin.jsonfiles andmarketplace.jsonfrom0.5.0→0.6.0 - Git tag:
v0.6.0