head to head · open source

gs-quant vs tfsec

gs-quant has 12,974 GitHub stars, 1,752 forks, 73 open issues and last shipped 2 days ago. tfsec has 7,038 stars, 558 forks, 18 open issues and last shipped 6 months ago. gs-quant leads on adoption by 84% (12,974 vs 7,038 stars). gs-quant is written in Python under Apache-2.0; tfsec is written in Go under MIT. gs-quant has attracted 14% as many forks as stars, tfsec 8%. gs-quant was the more recently maintained of the two, and both are self-hostable with no licence fee.

Two open source projects, one decision. Both are free and self-hostable — the differences are community size, license terms, language stack and release pace.

gs-quant ★ 13K tfsec ★ 7.0K category Business Software

← all 8884 open source comparisons

Side by side

gs-quant tfsec
GitHub stars ★ 13K ★ 7.0K
License Apache-2.0 MIT
Written in Python Go
Last push 2026-09-16 2026-03-25
Forks ⑂ 1.8K ⑂ 558
Self-hosting Yes Yes
Data ownership Your server Your server

pick gs-quant if

  • You weight community size — 13K stars and counting
  • You want the Apache-2.0 license terms
  • Your stack matches Python
  • You value the larger contributor base for long-term maintenance

full gs-quant profile →

pick tfsec if

  • You want the tfsec feature set and don't need the biggest community
  • You prefer the MIT license terms
  • Your stack matches Go
  • You evaluated both and tfsec fits your workflow better

full tfsec profile →

About gs-quant

GS Quant is an Apache 2.0 Python toolkit for quantitative finance, maintained by quantitative developers at Goldman Sachs, and it is intended for quants and institutional clients of the bank who build derivative pricing, trading strategy and risk management workflows on top of Goldman Sachs' risk transfer platform.

read the full gs-quant overview →

About tfsec

tfsec is a static analysis security scanner for Terraform code, written in Go and released under the MIT license. It lives in the infrastructure as code and DevSecOps ecosystem, alongside tools such as linters and CI scanners. The project is now part of Trivy, Aqua Security's broader open source security scanner, and its Terraform scanning engine forms the foundation of Trivy's IaC and misconfiguration scanning capabilities. The repository remains available, but engineering attention is directed at Trivy going forward.

read the full tfsec overview →

More in Business Software

Plane ★ 60K Twenty ★ 57K Odoo ★ 54K Cal.com ★ 49K Rocket.Chat ★ 46K cobalt ★ 43K

Related comparisons

lighthouse vs gs-quant lighthouse vs teleport lighthouse vs lynis lighthouse vs prowler lighthouse vs opa lighthouse vs amphion lighthouse vs checkov lighthouse vs kyverno plane vs rocket-chat plane vs cobalt plane vs buzz rocket-chat vs cobalt plane vs jitsi plane vs srs plane vs huly plane vs zulip plane vs anki twenty vs anki odoo vs anki cal-com vs anki plane vs tutor twenty vs tutor odoo vs tutor cal-com vs tutor

More Compliance & Risk Management projects

Compare either of these against the rest of the Compliance & Risk Management field.

gs-quant vs lighthouse gs-quant vs teleport gs-quant vs lynis gs-quant vs prowler gs-quant vs opa gs-quant vs Amphion gs-quant vs checkov gs-quant vs kyverno gs-quant vs aircrack-ng gs-quant vs rundeck gs-quant vs agent-governance-toolkit gs-quant vs laravel-activitylog

Frequently asked questions

Is gs-quant or tfsec more popular?

gs-quant has 12,974 GitHub stars and tfsec has 7,038. gs-quant has the larger community by that measure.

Are gs-quant and tfsec free?

Both are open source. gs-quant is licensed under Apache-2.0 and tfsec under MIT. Neither carries a licence fee.

What is the difference between gs-quant and tfsec?

gs-quant is written in Python and tfsec in Go. The practical differences are community size, licence terms, language stack and release cadence — all compared in the table above.

Which should I choose, gs-quant or tfsec?

Choose gs-quant if you want the larger community (12,974 stars) or its Apache-2.0 licence terms. Choose tfsec if its feature set, stack or MIT licence fits better. Both are self-hostable.