oscal-compass / compliance-trestleLinks
An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.
☆214Updated last week
Alternatives and similar repositories for compliance-trestle
Users that are interested in compliance-trestle are comparing it to the libraries listed below
Sorting:
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆189Updated 4 months ago
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆63Updated last year
- FedRAMP Automation☆346Updated 7 months ago
- Various deployments of the OSCAL editor☆47Updated last year
- Open source tool for processing OSCAL based FedRAMP SSPs☆43Updated last year
- A simple open source command line tool to support common operations over OSCAL content.☆55Updated 3 months ago
- An initial OpenAPI definition of an OSCAL REST API.☆40Updated last year
- NIST SP 800-53 content and other OSCAL content examples☆394Updated 3 weeks ago
- Demo setup for compliance-trestle☆35Updated 2 months ago
- The Compliance Validator☆184Updated this week
- A repository containing OSCAL serializations of the CIS Critical Security Controls☆56Updated 8 months ago
- This repository is a collection of resources to help facilitate compliance innovation utilizing Cloud, DevSecOps and Software Factory tec…☆76Updated 2 years ago
- The community area and documents about Code of Conduct.☆18Updated 4 years ago
- Tools for the OSCAL project☆36Updated 2 years ago
- Open Security Controls Assessment Language (OSCAL)☆805Updated this week
- A workflow automation tool for compliance content authoring☆20Updated this week
- Automate the creation of a System Security Plan (SSP)☆43Updated 5 months ago
- Automatically generated diagrams for OSCAL models☆20Updated 3 years ago
- A case study for ACSAC 2022 utilizing OSCAL with a custom GitHub action to automate assessments.☆23Updated 2 years ago
- The Auditree framework tool to run compliance control checks as unit tests.☆71Updated last year
- Scripts to import OSCAL example content into the Neo4J graph database☆29Updated 2 years ago
- ☆16Updated last year
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆192Updated last year
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆45Updated 5 years ago
- Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.☆240Updated last week
- A Java library to support processing OSCAL content☆35Updated last week
- Compliance-to-Policy (C2P) provides the framework to bridge the gap between compliance and policy administration.☆33Updated 7 months ago
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆208Updated last month
- A compliance analysis tool which enables organizations to more quickly articulate their compliance posture and also generate supporting e…☆50Updated last month
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year