Per-framework control coverage derived from open findings. Each finding's title + category is mapped to CIS / NIST / SOC 2 / PCI / ISO controls via a curated pattern catalog; the result is read-time, so changes to the catalog show up on next page load.
Connect a finding source (Defender, Wiz, Sentinel) to populate compliance posture. The framework mapper runs over every open finding's title + category against curated CIS / NIST / SOC 2 / PCI / ISO control patterns.