category
Open Source Compliance Risk Management Tools
45 open source tools in this category.
All Compliance Risk Management tools
Automated auditing, performance metrics, and best practices for the web.
The easiest, and most secure way to access and protect all of your infrastructure.
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentles
Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.
Python toolkit for quantitative finance
Open Policy Agent (OPA) is an open source, general-purpose policy engine.
Amphion (/æmˈfaɪən/) is a toolkit for Audio, Music, and Speech Generation. Its purpose is to support reproducible research and help junior researchers and engin
Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by
Unified Policy as Code
WiFi security auditing tools suite
Tfsec is now part of Trivy
Enable Self-Service Operations: Give specific users access to your existing tools, services, and scripts
AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10
Log activity inside your Laravel app
A simple, secure, easy-to-use bastion and session auditing system. Supports RDP, SSH, VNC, Telnet, HTTP, records and replays sessions for auditing and complianc
Transparent and Efficient Financial Analysis
Open Source Cloud Native Application Protection Platform (CNAPP)
OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-ti
Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
Record the change log from models in Laravel
Validation of best practices in your Kubernetes clusters
A Python Finance Library that focuses on the pricing and risk-management of Financial Derivatives, including fixed-income, equity, FX and credit derivatives.
Pentest Report Generator
Open-source, self-hosted file-processing tool. Convert, compress, OCR, transcribe & run local AI across image, video, audio, PDF & documents, via UI, REST API &
Open Source Algo Trading Platform for Everyone
HardeningKitty and Windows Hardening Settings
An extensible framework to audit executing operations in .NET
Pre-submission compliance scanner for the Apple App Store and Google Play. Scans code, privacy manifests, Android manifests, and IPA/APK/AAB binaries against th
A suite of tools to automate software compliance checks.
Get audit-ready for SOC 2, ISO 27001, HIPAA, and GDPR
Build privacy-compliant cookie banners with full control
HardeningKitty - Checks and hardens your Windows configuration
NIST Certified SCAP 1.2 toolkit
Appshark is a static taint analysis platform to scan vulnerabilities in an Android app.
ssh rdp vnc telnet sftp bastion/jump web putty xshell terminal jumpserver audit realtime monitor rz/sz 堡垒机 云桌面 linux devops sftp websocket file management rz/s
🧵 CLI tool for directly patching container images!
📱⚡️ Lighthouse for Mobile - audits your app and gives a performance score to your Android apps (native, React Native, Flutter..). Measure performance on CLI, E
Secure Vault for Customer PII/PHI/PCI/KYC Records
Decision audit trail + persistent memory for AI trading agents. Outcome-weighted recall, tamper-evident SHA-256 chain with RFC 3161 anchoring, 20 MCP tools.
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. B
Agile Threat Modeling Toolkit
Pretty CSS analytics on the CLI
Audit for Doctrine Entities
Generate legal policies directly from TypeScript code
Frequently asked questions
How many open source Compliance Risk Management tools are there?
This registry tracks 45 open source Compliance Risk Management projects, with 248,068 combined GitHub stars. The list is ranked by stars and refreshed nightly.
What is the most popular open source Compliance Risk Management project?
lighthouse leads this category with 30,785 GitHub stars, followed by teleport.
Are these Compliance Risk Management tools free?
Yes — every project listed here is open source. Some also offer paid hosted versions alongside the free self-hosted option; the licence for each project is shown on its card.