{"id":13562276,"url":"https://github.com/commitdev/zero","last_synced_at":"2026-01-28T23:11:47.401Z","repository":{"id":37895797,"uuid":"203630543","full_name":"commitdev/zero","owner":"commitdev","description":"Allow startup developers to ship to production on day 1","archived":false,"fork":false,"pushed_at":"2023-03-07T00:30:47.000Z","size":47900,"stargazers_count":581,"open_issues_count":57,"forks_count":53,"subscribers_count":21,"default_branch":"main","last_synced_at":"2026-01-15T07:06:41.818Z","etag":null,"topics":["infrastructure","startup","technical-founders"],"latest_commit_sha":null,"homepage":"https://getzero.dev","language":"Go","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mpl-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/commitdev.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null}},"created_at":"2019-08-21T17:13:57.000Z","updated_at":"2025-11-22T13:12:59.000Z","dependencies_parsed_at":"2023-07-14T09:22:25.442Z","dependency_job_id":null,"html_url":"https://github.com/commitdev/zero","commit_stats":null,"previous_names":["commitdev/commit0"],"tags_count":15,"template":false,"template_full_name":null,"purl":"pkg:github/commitdev/zero","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/commitdev%2Fzero","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/commitdev%2Fzero/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/commitdev%2Fzero/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/commitdev%2Fzero/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/commitdev","download_url":"https://codeload.github.com/commitdev/zero/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/commitdev%2Fzero/sbom","scorecard":{"id":300928,"data":{"date":"2025-08-11","repo":{"name":"github.com/commitdev/zero","commit":"de71b8bd09b0d8d57107fbdd61ec870994a6cc41"},"scorecard":{"version":"v5.2.1-40-gf6ed084d","commit":"f6ed084d17c9236477efd66e5b258b9d4cc7b389"},"score":3.4,"checks":[{"name":"Code-Review","score":6,"reason":"Found 11/17 approved changesets -- score normalized to 6","details":null,"documentation":{"short":"Determines if the project requires human code review before pull requests (aka merge requests) are merged.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#code-review"}},{"name":"Maintained","score":0,"reason":"0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0","details":null,"documentation":{"short":"Determines if the project is \"actively maintained\".","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#maintained"}},{"name":"Packaging","score":-1,"reason":"packaging workflow not detected","details":["Warn: no GitHub/GitLab publishing workflow detected."],"documentation":{"short":"Determines if the project is published as a package that others can easily download, install, easily update, and uninstall.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#packaging"}},{"name":"Binary-Artifacts","score":9,"reason":"binaries present in source code","details":["Warn: binary detected: internal/init/debug.test:1"],"documentation":{"short":"Determines if the project has generated executable (binary) artifacts in the source repository.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#binary-artifacts"}},{"name":"Token-Permissions","score":0,"reason":"detected GitHub workflow tokens with excessive permissions","details":["Info: jobLevel 'contents' permission set to 'read': .github/workflows/doc-site.yml:52","Warn: no topLevel permission defined: .github/workflows/codeql-analysis.yml:1","Warn: no topLevel permission defined: .github/workflows/config.yml:1","Warn: no topLevel permission defined: .github/workflows/doc-site.yml:1","Info: no jobLevel write permissions found"],"documentation":{"short":"Determines if the project's workflows follow the principle of least privilege.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#token-permissions"}},{"name":"CII-Best-Practices","score":0,"reason":"no effort to earn an OpenSSF best practices badge detected","details":null,"documentation":{"short":"Determines if the project has an OpenSSF (formerly CII) Best Practices Badge.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#cii-best-practices"}},{"name":"Dangerous-Workflow","score":10,"reason":"no dangerous workflow patterns detected","details":null,"documentation":{"short":"Determines if the project's GitHub Action workflows avoid dangerous patterns.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#dangerous-workflow"}},{"name":"Fuzzing","score":0,"reason":"project is not fuzzed","details":["Warn: no fuzzer integrations found"],"documentation":{"short":"Determines if the project uses fuzzing.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#fuzzing"}},{"name":"License","score":10,"reason":"license file detected","details":["Info: project has a license file: LICENSE:0","Info: FSF or OSI recognized license: Mozilla Public License 2.0: LICENSE:0"],"documentation":{"short":"Determines if the project has defined a license.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#license"}},{"name":"Signed-Releases","score":0,"reason":"Project has not signed or included provenance with any releases.","details":["Warn: release artifact v0.2.6 not signed: https://api.github.com/repos/commitdev/zero/releases/84128035","Warn: release artifact v0.2.5 not signed: https://api.github.com/repos/commitdev/zero/releases/69441744","Warn: release artifact v0.2.4 not signed: https://api.github.com/repos/commitdev/zero/releases/60947826","Warn: release artifact v0.2.3 not signed: https://api.github.com/repos/commitdev/zero/releases/58225423","Warn: release artifact v0.2.2 not signed: https://api.github.com/repos/commitdev/zero/releases/51063535","Warn: release artifact v0.2.6 does not have provenance: https://api.github.com/repos/commitdev/zero/releases/84128035","Warn: release artifact v0.2.5 does not have provenance: https://api.github.com/repos/commitdev/zero/releases/69441744","Warn: release artifact v0.2.4 does not have provenance: https://api.github.com/repos/commitdev/zero/releases/60947826","Warn: release artifact v0.2.3 does not have provenance: https://api.github.com/repos/commitdev/zero/releases/58225423","Warn: release artifact v0.2.2 does not have provenance: https://api.github.com/repos/commitdev/zero/releases/51063535"],"documentation":{"short":"Determines if the project cryptographically signs release artifacts.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#signed-releases"}},{"name":"Branch-Protection","score":-1,"reason":"internal error: error during branchesHandler.setup: internal error: githubv4.Query: Resource not accessible by integration","details":null,"documentation":{"short":"Determines if the default and release branches are protected with GitHub's branch protection settings.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#branch-protection"}},{"name":"Security-Policy","score":0,"reason":"security policy file not detected","details":["Warn: no security policy file detected","Warn: no security file to analyze","Warn: no security file to analyze","Warn: no security file to analyze"],"documentation":{"short":"Determines if the project has published a security policy.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#security-policy"}},{"name":"Pinned-Dependencies","score":0,"reason":"dependency not pinned by hash detected -- score normalized to 0","details":["Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:21: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/codeql-analysis.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/codeql-analysis.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:36: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/codeql-analysis.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:50: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/codeql-analysis.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/config.yml:10: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/config.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/config.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/config.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/config.yml:14: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/config.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/doc-site.yml:23: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/doc-site.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/doc-site.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/doc-site.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/doc-site.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/doc-site.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/doc-site.yml:59: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/doc-site.yml/main?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/doc-site.yml:61: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/doc-site.yml/main?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/doc-site.yml:67: update your workflow using https://app.stepsecurity.io/secureworkflow/commitdev/zero/doc-site.yml/main?enable=pin","Warn: containerImage not pinned by hash: Dockerfile:1","Warn: containerImage not pinned by hash: Dockerfile:35: pin your Docker image by updating alpine:3.10 to alpine:3.10@sha256:451eee8bedcb2f029756dc3e9d73bab0e7943c1ac55cff3a4861c52a0fdd3e98","Warn: goCommand not pinned by hash: Dockerfile:15","Warn: npmCommand not pinned by hash: .github/workflows/doc-site.yml:33","Info:   0 out of  12 GitHub-owned GitHubAction dependencies pinned","Info:   0 out of   1 third-party GitHubAction dependencies pinned","Info:   0 out of   2 containerImage dependencies pinned","Info:   0 out of   1 goCommand dependencies pinned","Info:   0 out of   1 npmCommand dependencies pinned"],"documentation":{"short":"Determines if the project has declared and pinned the dependencies of its build process.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#pinned-dependencies"}},{"name":"SAST","score":7,"reason":"SAST tool detected but not run on all commits","details":["Info: SAST configuration detected: CodeQL","Warn: 0 commits out of 24 are checked with a SAST tool"],"documentation":{"short":"Determines if the project uses static code analysis.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#sast"}},{"name":"Vulnerabilities","score":0,"reason":"83 existing vulnerabilities detected","details":["Warn: Project is vulnerable to: GHSA-968p-4wvh-cqc8","Warn: Project is vulnerable to: GHSA-67hx-6x53-jw92","Warn: Project is vulnerable to: GHSA-c2jc-4fpr-4vhg","Warn: Project is vulnerable to: GHSA-wf5p-g6vw-rhxx","Warn: Project is vulnerable to: GHSA-jr5f-v2jv-69x6","Warn: Project is vulnerable to: GHSA-qwcr-r2fm-qrc7","Warn: Project is vulnerable to: GHSA-v6h2-p8h4-qcjw","Warn: Project is vulnerable to: GHSA-grv7-fg5c-xmjg","Warn: Project is vulnerable to: GHSA-w8qv-6jwh-64r5","Warn: Project is vulnerable to: GHSA-pxg6-pf52-xh8x","Warn: Project is vulnerable to: GHSA-3xgq-45jj-v275","Warn: Project is vulnerable to: GHSA-w573-4hg7-7wgq","Warn: Project is vulnerable to: GHSA-mf6x-hrgr-658f","Warn: Project is vulnerable to: GHSA-xrh7-m5pp-39r6","Warn: Project is vulnerable to: GHSA-rv95-896h-c2vc","Warn: Project is vulnerable to: GHSA-qw6h-vgh9-j6wx","Warn: Project is vulnerable to: GHSA-jchw-25xp-jwwc","Warn: Project is vulnerable to: GHSA-cxjh-pqwp-8mfp","Warn: Project is vulnerable to: GHSA-pfrx-2q88-qq97","Warn: Project is vulnerable to: GHSA-rc47-6667-2j5j","Warn: Project is vulnerable to: GHSA-c7qv-q95q-8v27","Warn: Project is vulnerable to: GHSA-4www-5p9h-95mh","Warn: Project is vulnerable to: GHSA-9gqv-wp59-fq42","Warn: Project is vulnerable to: GHSA-33f9-j839-rf8h","Warn: Project is vulnerable to: GHSA-c36v-fmgq-m8hx","Warn: Project is vulnerable to: GHSA-78xj-cgh5-2h22","Warn: Project is vulnerable to: GHSA-2p57-rm9w-gvfp","Warn: Project is vulnerable to: GHSA-9c47-m6qq-7p4h","Warn: Project is vulnerable to: GHSA-76p3-8jx3-jpfq","Warn: Project is vulnerable to: GHSA-3rfm-jhwj-7488","Warn: Project is vulnerable to: GHSA-hhq3-ff78-jv3g","Warn: Project is vulnerable to: GHSA-952p-6rrq-rcjv","Warn: Project is vulnerable to: GHSA-f8q6-p94x-37v3","Warn: Project is vulnerable to: GHSA-mwcw-c2x4-8c55","Warn: Project is vulnerable to: GHSA-5rrq-pxf6-6jx5","Warn: Project is vulnerable to: GHSA-8fr3-hfg3-gpgp","Warn: Project is vulnerable to: GHSA-gf8q-jrpm-jvxq","Warn: Project is vulnerable to: GHSA-2r2c-g63r-vccr","Warn: Project is vulnerable to: GHSA-cfm4-qjh2-4765","Warn: Project is vulnerable to: GHSA-x4jg-mjrx-434g","Warn: Project is vulnerable to: GHSA-rp65-9cf3-cjxr","Warn: Project is vulnerable to: GHSA-76c9-3jph-rj3q","Warn: Project is vulnerable to: GHSA-9wv6-86v2-598j","Warn: Project is vulnerable to: GHSA-rhx6-c78j-4q9w","Warn: Project is vulnerable to: GHSA-7fh5-64p2-3v2j","Warn: Project is vulnerable to: GHSA-x7hr-w5r2-h6wg","Warn: Project is vulnerable to: GHSA-c2qf-rxjj-qqgw","Warn: Project is vulnerable to: GHSA-m6fv-jmcg-4jfg","Warn: Project is vulnerable to: GHSA-76p7-773f-r4q5","Warn: Project is vulnerable to: GHSA-cm22-4g7w-348p","Warn: Project is vulnerable to: GHSA-g4rg-993r-mgx7","Warn: Project is vulnerable to: GHSA-w5p7-h5w8-2hfq","Warn: Project is vulnerable to: GHSA-fhg7-m89q-25r3","Warn: Project is vulnerable to: GHSA-hc6q-2mpp-qw7j","Warn: Project is vulnerable to: GHSA-4vvj-4cpr-p986","Warn: Project is vulnerable to: GHSA-wr3j-pwj9-hqq6","Warn: Project is vulnerable to: GHSA-4v9v-hfq4-rm2v","Warn: Project is vulnerable to: GHSA-9jgg-88mc-972h","Warn: Project is vulnerable to: GHSA-3h5v-q93c-6h6q","Warn: Project is vulnerable to: GHSA-whgm-jr23-g3j9","Warn: Project is vulnerable to: GHSA-93q8-gq69-wqmw","Warn: Project is vulnerable to: GHSA-q8pj-2vqx-8ggc","Warn: Project is vulnerable to: GO-2022-0391 / GHSA-6jvc-q2x7-pchv / GHSA-76wf-9vgp-pj7w","Warn: Project is vulnerable to: GO-2022-0635 / GHSA-7f33-f4f5-xwgw","Warn: Project is vulnerable to: GO-2022-0646 / GHSA-f5pg-7wfw-84q9","Warn: Project is vulnerable to: GO-2022-0438 / GHSA-27rq-4943-qcwp","Warn: Project is vulnerable to: GO-2022-0586 / GHSA-28r2-q6m8-9hpx / GHSA-cjr4-fv6c-f3mv / GHSA-fcgg-rvwg-jv58 / GHSA-x24g-9w7v-vprh","Warn: Project is vulnerable to: GO-2023-1578 / GHSA-jpxj-2jvg-6jv9","Warn: Project is vulnerable to: GO-2024-2948 / GHSA-xfhp-jf8p-mh5w","Warn: Project is vulnerable to: GO-2022-0236 / GHSA-h86h-8ppg-mxmh","Warn: Project is vulnerable to: GO-2021-0238 / GHSA-83g2-8m93-v3w7","Warn: Project is vulnerable to: GO-2022-0288","Warn: Project is vulnerable to: GO-2022-0969 / GHSA-69cg-p879-7622","Warn: Project is vulnerable to: GO-2022-1144 / GHSA-xrjj-mj9h-534m","Warn: Project is vulnerable to: GO-2023-1571 / GHSA-vvpx-j8f3-3w6h","Warn: Project is vulnerable to: GO-2023-1988 / GHSA-2wrh-6pvc-2jm9","Warn: Project is vulnerable to: GO-2023-2102 / GHSA-4374-p667-p6c8","Warn: Project is vulnerable to: GHSA-qppj-fm5r-hxr3","Warn: Project is vulnerable to: GO-2024-2687 / GHSA-4v7x-pqxf-cx7m","Warn: Project is vulnerable to: GO-2024-3333","Warn: Project is vulnerable to: GO-2025-3503 / GHSA-qxp5-gwg8-xv66","Warn: Project is vulnerable to: GO-2025-3595 / GHSA-vvgc-356p-c3xw","Warn: Project is vulnerable to: GO-2022-0493 / GHSA-p782-xgp4-8hr8"],"documentation":{"short":"Determines if the project has open, known unfixed vulnerabilities.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#vulnerabilities"}}]},"last_synced_at":"2025-08-17T20:36:13.352Z","repository_id":37895797,"created_at":"2025-08-17T20:36:13.352Z","updated_at":"2025-08-17T20:36:13.352Z"},"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":28854548,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-01-28T22:56:21.783Z","status":"ssl_error","status_checked_at":"2026-01-28T22:56:00.861Z","response_time":57,"last_error":"SSL_connect returned=1 errno=0 peeraddr=140.82.121.6:443 state=error: unexpected eof while reading","robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":false,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["infrastructure","startup","technical-founders"],"created_at":"2024-08-01T13:01:06.608Z","updated_at":"2026-01-28T23:11:47.395Z","avatar_url":"https://github.com/commitdev.png","language":"Go","funding_links":[],"categories":["Go","Boilerplate :gem:"],"sub_categories":[],"readme":"[![Tests](https://circleci.com/gh/commitdev/zero.svg?style=shield)](https://app.circleci.com/pipelines/github/commitdev/zero)\n[![Go Report Card](https://goreportcard.com/badge/commitdev/zero)](https://goreportcard.com/report/commitdev/zero)\n[![Slack](https://img.shields.io/badge/slack-join-brightgreen?logo=slack\u0026style=social)](https://slack.getzero.dev)\n\n\u003cp align=\"center\" width=\"100%\"\u003e\n    \u003cimg width=\"66%\" src=\"https://raw.githubusercontent.com/commitdev/zero/main/doc-site/logo.png\"\u003e\n\u003c/p\u003e\n\n## What is Zero\n\nZero is an open source tool which makes it quick and easy for startup technical founders and developers to build everything they need to launch and grow high-quality SaaS applications faster and more cost-effectively.\n\nZero sets up everything you need so you can immediately start building your product.\n\nZero was created by [Commit](https://commit.dev).\n## Why is Zero good for startups\n\nAs a technical founder or the first technical hire at a startup, your sole focus is to build the logic for your application and get it into customers’ hands as quickly and reliably as possible. Yet you immediately face multiple hurdles before even writing the first line of code. You’re forced to make many tech trade-offs, leading to decision fatigue. You waste countless hours building boilerplate SaaS features not adding direct value to your customers. You spend precious time picking up unfamiliar tech, make wrong choices that result in costly refactoring or rebuilding in the future, and are unaware of tools and best practices that would speed up your product iteration.\n\nZero was built by a team of engineers with many years of experience in building and scaling startups. We have faced all the problems you will and want to provide a way for new startups to avoid all those pitfalls. We also want to help you learn about the tech choices we made so your team can become proficient in some of the great tools we have included. The system you get starts small but allows you to scale well into the future when you need to.\n\nEverything built by Zero is yours. After using Zero to generate your infrastructure, backend, and frontend, all the code is checked into your source control repositories and becomes the basis for your new system. We provide constant updates and new modules that you can pull in on an ongoing basis, but you can also feel free to customize as much as you like with no strings attached. If you do happen to make a change to core functionality and feel like contributing it back to the project, we'd love that too!\n\nIt's easy to get started, the only thing you'll need is an AWS account. Just enter your AWS CLI tokens or choose your existing profile during the setup process and everything is built for you automatically using infrastructure-as-code so you can see exactly what's happening and easily modify it if necessary.\n\n[Read about the day-to-day experience of using a system set up using Zero](https://getzero.dev/docs/zero/about/real-world-usage)\n\n\n## Why is Zero Reliable, Scalable, Performant, and Secure\n\nReliability: Your infrastructure will be set up in multiple availability zones making it highly available and fault tolerant. All production workloads will run with multiple instances by default, using AWS ELB and Nginx to load balance traffic. All infrastructure is represented with code using [HashiCorp Terraform][terraform] so your environments are reproducible, auditable, and easy to configure.\n\nScalability: Your services will be running in Kubernetes, with the EKS nodes running in an AWS [Auto Scaling Group][asg]. Both the application workloads and cluster size are ready to scale whenever the need arises. Your frontend assets will be stored in S3 and served from AWS' Cloudfront CDN which operates at global scale.\n\nSecurity: Properly configured access-control to resources/security groups, using secret storage systems (AWS Secret Manager, Kubernetes secrets), and following best practices provides great security out of the box. Our practices are built on top of multiple security audits and penetration tests. Automatic certificate management using [Let's Encrypt][letsencrypt], database encryption, VPN support, and more means your traffic will always be encrypted. Built-in application features like user authentication help you bullet-proof your application by using existing, tested tools rather than reinventing the wheel when it comes to features like user management and auth.\n\n\n## What do you get out of the box?\n[Read about why we made these technology choices and where they are most applicable.](https://getzero.dev/docs/zero/about/technology-choices)\n\n[Check out some resources for learning more about these technologies.](https://getzero.dev/docs/zero/reference/learning-resources)\n\n### Infrastructure\n- Fully configured infrastructure-as-code AWS environment including:\n  - VPCs per environment (staging, production) with pre-configured subnets, security groups, etc.\n  - EKS Kubernetes cluster per environment, pre-configured with helpful tools like cert-manager, external-dns, nginx-ingress-controller\n  - RDS database for your application (Postgres or MySQL)\n  - S3 buckets and Cloudfront distributions to serve your assets\n- Logging and Metrics collected automatically using either Cloudwatch or Prometheus + Grafana, Elasticsearch + Kibana\n- VPN using [Wireguard][wireguard] (Optional)\n- User management and Identity / Access Proxy using Ory [Kratos][kratos] and [Oathkeeper][oathkeeper] (Optional)\n- Tooling to make it easy to set up secure access for your dev team\n- Local/Cloud Hybrid developer environment using Telepresence (Optional)\n\n### Backend\n- Golang or Node.js example project automatically set up, Dockerized, and deployed to your new Kubernetes cluster\n- CI pipeline built with [CircleCI][circleci] or GitHub Actions. Just merge a PR and a deploy will start. Your code will be built and tested, deployed to staging, then prompt you to push to production\n- File upload / download support using signed Cloudfront URLs (Optional)\n- Email support using [SendGrid][sendgrid] or AWS SES (Optional)\n- Notification support for sending and receiving messages in your application (web, mobile, SMS, Email, etc.) (Optional) (In Progress)\n- User management integration with Kratos and Oathkeeper - No need to handle login, signup, authentication yourself (Optional)\n\n### Frontend\n- React example project automatically set up, deployed and served securely to your customers\n- CI pipeline built with CircleCI or GitHub Actions. Just merge a PR and a deploy will start. Your code will be built and tested, deployed to staging, then prompt you to push to production\n- File upload / download support using signed Cloudfront URLs (Optional)\n- User management integration with Kratos - Just style the example login / signup flow to look the way you want (Optional)\n- Static site example project using Gatsby to easily make a landing page, also set up with a CI Pipeline using CircleCI (Optional)\n\n___\n\n## Getting Started\n\n[See the getting started guide at the Zero docs site.](https://getzero.dev/docs/zero/getting-started/installation)\n\n### Building blocks of Zero\n\n### Project Definition:\nEach project is defined by this project definition file, this manifest contains your project details, and is the source of truth for the templating(`zero create`) and provision(`zero apply`) steps.\n\nSee [`zero-project.yml` reference](https://getzero.dev/docs/zero/reference/project-definition) for details.\n### Module Definition\nModule definition defines the information needed for the module to run (`zero apply`).\nAlso declares dependency used to determine the order of execution with other modules.\n\nSee [`zero-module.yml` reference](https://getzero.dev/docs/zero/reference/module-definition) for details.\n___\n\n\n## Zero Default Stack\n\n[System Architecture Diagram](https://raw.githubusercontent.com/commitdev/zero-aws-eks-stack/main/docs/architecture-overview.svg)\n\nThe core zero modules currently available are:\n| Project | URL |\n|---|---|\n| AWS Infrastructure | [https://github.com/commitdev/zero-aws-eks-stack](https://github.com/commitdev/zero-aws-eks-stack) |\n| Backend (Go)  | [https://github.com/commitdev/zero-backend-go](https://github.com/commitdev/zero-backend-go) |\n| Backend (Node.js)  | [https://github.com/commitdev/zero-backend-node](https://github.com/commitdev/zero-backend-node) |\n| Frontend (React) | [https://github.com/commitdev/zero-frontend-react](https://github.com/commitdev/zero-frontend-react) |\n| Static Site (Gatsby) | [https://github.com/commitdev/zero-static-site-gatsby](https://github.com/commitdev/zero-static-site-gatsby) |\n\n___\n\n## Contributing to Zero\n\nZero welcomes collaboration from the community; you can open new issues in our GitHub repo, Submit PRs' for bug fixes or browse through the tickets currently open to see what you can contribute too.\n\nWe use Zenhub to show us the entire project across all repositories, so if you are interested in seeing that or participating, you can can [check out our workspace](https://app.zenhub.com/workspaces/commit-zero-5da8decc7046a60001c6db44/board?repos=203630543,247773730,257676371,258369081,291818252,293942410,285931648,317656612)\n\n### Building the tool\n\n```shell\n$ git clone git@github.com:commitdev/zero.git\n$ cd zero \u0026\u0026 make build\n```\n\n### Running the tool locally\n\nTo install the CLI into your GOPATH and test it, run:\n\n```shell\n$ make install-go\n$ zero --help\n```\n\n### Releasing a new version on GitHub and Brew\n\nWe are using a tool called `goreleaser` which you can get from brew if you're on MacOS:\n`brew install goreleaser`\n\nAfter you have the tool, you can follow these steps:\n```\nexport GITHUB_TOKEN=\u003cyour token with access to write to the zero repo\u003e\ngit tag -s -a \u003cversion number like v0.0.1\u003e -m \"Some message about this release\"\ngit push origin \u003cversion number\u003e\ngoreleaser release\n```\n\nThis will create a new release in GitHub and automatically collect all the commits since the last release into a changelog.\nIt will also build binaries for various OSes and attach them to the release and push them to brew.\nThe configuration for goreleaser is in [.goreleaser.yml](.goreleaser.yml)\n\n\n___\n## FAQ\n\nWhy is my deployed application not yet accessible?\n\n- It takes about 20 - 35 mins for your deployed application to be globally available through AWS CloudFront CDN.\n\n\u003c!-- links --\u003e\n[acw]:      https://aws.amazon.com/cloudwatch/\n[vpc]:      https://aws.amazon.com/vpc/\n[iam]:      https://aws.amazon.com/iam/\n[asg]:      https://aws.amazon.com/autoscaling/\n[zero binary]: https://github.com/commitdev/zero/releases/\n[and more]: https://github.com/commitdev/zero-aws-eks-stack/blob/master/docs/resources.md\n[terraform]: https://terraform.io\n[letsencrypt]: https://letsencrypt.org/\n[kratos]: https://www.ory.sh/kratos/\n[oathkeeper]: https://www.ory.sh/oathkeeper/\n[wireguard]: https://wireguard.com/\n[circleci]: https://circleci.com/\n[sendgrid]: https://sendgrid.com/\n[launchdarkly]: https://launchdarkly.com/\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fcommitdev%2Fzero","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fcommitdev%2Fzero","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fcommitdev%2Fzero/lists"}