Automated scanning of infrastructure against regulatory frameworks such as PCI DSS, HIPAA and SOC 2, and against security best practice. Use this skill whenever the user mentions compliance audit, pci dss, hipaa, soc 2, iso 27001, cis benchmark, audit evidence, or is working with Prowler, ScoutSuite, AWS Config, even if they never say "security compliance auditing" explicitly. Routes live lookups through the Cloud-Security-Auditor-API endpoint. Do not use it for unrelated application feature work or general coding questions.