{"id":31692525,"url":"https://github.com/gusinfosec/compliance-as-code","last_synced_at":"2025-10-08T14:53:50.588Z","repository":{"id":317267819,"uuid":"1065094842","full_name":"gusinfosec/compliance-as-code","owner":"gusinfosec","description":"Codify frameworks (SOX, PCI DSS, HIPAA, ISO27001) into YAML. Automate evidence collection and keep dashboards audit-ready — without the spreadsheets..","archived":false,"fork":false,"pushed_at":"2025-10-08T03:15:49.000Z","size":4925,"stargazers_count":1,"open_issues_count":0,"forks_count":0,"subscribers_count":0,"default_branch":"main","last_synced_at":"2025-10-08T05:35:04.321Z","etag":null,"topics":["audit","automation","cybersecurity","github-actions","sas"],"latest_commit_sha":null,"homepage":"","language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mit","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/gusinfosec.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE.md","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null}},"created_at":"2025-09-27T03:55:29.000Z","updated_at":"2025-10-08T03:15:52.000Z","dependencies_parsed_at":"2025-09-30T01:33:17.054Z","dependency_job_id":null,"html_url":"https://github.com/gusinfosec/compliance-as-code","commit_stats":null,"previous_names":["gusinfosec/compliance-as-code"],"tags_count":0,"template":false,"template_full_name":null,"purl":"pkg:github/gusinfosec/compliance-as-code","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/gusinfosec%2Fcompliance-as-code","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/gusinfosec%2Fcompliance-as-code/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/gusinfosec%2Fcompliance-as-code/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/gusinfosec%2Fcompliance-as-code/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/gusinfosec","download_url":"https://codeload.github.com/gusinfosec/compliance-as-code/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/gusinfosec%2Fcompliance-as-code/sbom","scorecard":null,"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":278963832,"owners_count":26076542,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","status":"online","status_checked_at":"2025-10-08T02:00:06.501Z","response_time":56,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["audit","automation","cybersecurity","github-actions","sas"],"created_at":"2025-10-08T14:53:37.820Z","updated_at":"2025-10-08T14:53:50.581Z","avatar_url":"https://github.com/gusinfosec.png","language":null,"funding_links":["https://ko-fi.com/s/76ff7669fc","https://ko-fi.com/yourlink"],"categories":[],"sub_categories":[],"readme":"![CaC Logo](assets/cac-github.png)\n\n---\n\n# Compliance-as-Code\n\n![Build for Linux](https://img.shields.io/badge/build-Linux-green)\n![License: MIT](https://img.shields.io/badge/License-MIT-yellow.svg)\n![GitHub stars](https://img.shields.io/github/stars/gusinfosec/compliance-as-code?style=social)\n\n---\n\n### 🚀 Get Compliance-as-Code\n\nAutomate your compliance journey with YAML-based policies, evidence collection, and audit dashboards.  \nChoose a subscription tier or a one-time download.\n\n[![Startup $99/mo](https://img.shields.io/badge/Startup-%2499%2Fmo-blue)](https://buy.stripe.com/3cIfZh8Yo9SL4bD12ffbq03)  \n[![Enterprise $499/mo](https://img.shields.io/badge/Enterprise-%24499%2Fmo-blueviolet)](https://buy.stripe.com/fZu3cv8Yo7KD4bD12ffbq04)\n\n---\n\n### ☕ One-Time Ko-fi Purchase\n\nPrefer a single purchase? Get the current version as a direct download.  \n*(Future updates require a new purchase or Stripe subscription.)*\n\n[![Ko-fi $15](https://img.shields.io/badge/Ko--fi-%2415-orange)](https://ko-fi.com/s/76ff7669fc)\n\n---\n\n**Codify compliance. Automate evidence. Stay audit‑ready.**  \nCompliance-as-Code (CaC) turns frameworks like SOX, PCI DSS, ISO 27001, and HIPAA into YAML policies that drive automation and audit dashboards.\n\n---\n\n## 🚀 What is CaC?\n\nCaC is a **B2B SaaS** platform that simplifies compliance management:\n\n- **Policy-as-Code**: YAML-based compliance controls.  \n- **Automation**: Collect evidence automatically across your systems.  \n- **Audit-Ready Dashboards**: Export clean reports for auditors.  \n- **Integrations**: Works with your CI/CD, cloud infra, and ticketing tools.\n\n---\n\n## 💳 Pricing \u0026 Plans\n\nChoose a subscription tier or a one-time Ko-fi purchase.\n\n### 🟣 Startup — **$99/mo**\n- Full YAML policy engine (SOX, PCI, HIPAA, ISO27001)\n- Automated evidence collection\n- Compliance dashboard access\n- Basic integrations (GitHub, GitLab, Jira)\n\n---\n\n### 🟠 Enterprise — **$499/mo**\nEverything in Startup, plus:\n- Advanced integrations (Atlassian, ServiceNow, cloud APIs)\n- Priority roadmap influence\n- Premium onboarding \u0026 support\n- Export-ready auditor packages\n\n---\n\n### ☕ One-Time Ko-fi Purchase — **$15**\n- Download current version instantly\n- No subscription required  \n*(future updates require new purchase or subscription)*\n\n[![Support me on Ko-fi](assets/cac-ko-fi.png)](https://ko-fi.com/yourlink)\n\n---\n\n## 📊 Compare Plans\n\n| Feature                              | Startup ($99/mo) | Enterprise ($499/mo) |\n|--------------------------------------|------------------|-----------------------|\n| YAML Policy Engine                   | ✅               | ✅                    |\n| Automated Evidence Collection        | ✅               | ✅                    |\n| Audit Dashboards \u0026 Exports           | ✅               | ✅                    |\n| Basic Integrations (GitHub/Jira)     | ✅               | ✅                    |\n| Advanced Integrations (Atlassian, etc.) | ❌            | ✅                    |\n| Priority Roadmap Influence           | ❌               | ✅                    |\n| Premium Onboarding \u0026 Support         | ❌               | ✅                    |\n\n---\n\n## ⚡ Quick Install\n\n1. Clone the repo and install dependencies:\n\n   ```bash\n   git clone https://github.com/gusinfosec/compliance-as-code.git\n   cd compliance-as-code\n   pnpm install\n   ```\n\n2. Start API (port 4000) \u0026 Web (port 3001):\n\n   ```bash\n   pnpm --filter cac-api dev\n   pnpm --filter cac-web dev\n   ```\n\n3. Open browser at `http://localhost:3001`\n\n---\n\n## 📄 License \u0026 Privacy\n\n- [LICENSE.md](LICENSE.md) — MIT License  \n- [PRIVACY.md](PRIVACY.md) — Our privacy commitment  \n\n---\n\n## 🤝 Support\n\n- 💳 Stripe: Monthly subscriptions (Startup / Enterprise)  \n- ☕ Ko-fi: One-time support ($15)  \n- GitHub Sponsors: Coming soon  \n\n---\n\n**Compliance-as-Code** — Automating trust, one YAML at a time.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fgusinfosec%2Fcompliance-as-code","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fgusinfosec%2Fcompliance-as-code","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fgusinfosec%2Fcompliance-as-code/lists"}