Openlane
Self-hosted cybersecurity tools tool that provides comprehensive platform for automating compliance workflows.
Overview
Open source compliance automation for SOC 2, GDPR, ISO27001, NIST 800-53, and more This repository houses the core server and orchestration elements which are at the heart of the Openlane cloud service. Sign up for an account today (no credit card required) and try it out! The project has 225 GitHub stars and is licensed under Apache-2.0.
Key Features
Source: GitHub README
- Creation of new programs that include pre-built templates, controls, risks, etc., for standards like SOC2, ISO27001, NIST800-53, and more
- Automated Task assignments and configurable workflows with task reminders and escalation
- Evidence upload, approval processes, and other configurable automation to get you through your audits
- Robust user and group management with a myriad of RBAC controls / toggles to ensure individuals in your company see what they are supposed to see
- Multiple authentication methods and organization-level controls for authorized domains including organization-wide SSO
- Automated domain scanning with assets and other resources created automatically for your approval
- Questionnaire creation, customization, and automation for easier internal and external interactions with your staff, auditors, and vendors
- Notification customizations, channel definitions, comments and histories on all your objects
- Easy to use documentation editors and storage for Policies and Procedures, or whatever documentation is needed
Getting Started
Source: GitHub README
Setup Taskfile by following the
instructions and using one of the various convenient package managers or
installation scripts. After installation, you can then simply run task install
to load the associated dependencies. Nearly everything in this repository
assumes you already have a local golang environment setup so this is not
included. Please see the associated documentation.
Normalized Features
Source: tool-features-normalized.json
brew, docker, graphql, kubernetes, postgresql, rest api, sso, two factor auth.
Deploy
Features
Authentication & Access
- Single Sign-On (SSO)
- Two-Factor Authentication
Integrations & APIs
- GraphQL API
- REST API
Related Security & Authentication Tools
View all 159 →Ghidra
66KA free, open-source software reverse engineering framework created by the NSA — disassemble, decompile, and analyze compiled code on any platform.
PocketBase
58KOpen-source backend in a single 12 MB binary — realtime database, auth, file storage, and admin dashboard. No Docker, no Postgres, just run it.
Vaultwarden
57KLightweight, self-hosted Bitwarden-compatible password manager written in Rust. Uses 10x less RAM than the official server and works with all Bitwarden clients.
Zen Browser
41KZen Browser is a privacy-focused, beautifully designed Firefox fork with a unique sidebar tab layout, split views, and built-in content blocking — no telemetry, no tracking.
Vault
35KManage secrets and protect sensitive data. Securely store and control access to tokens, passwords, certificates, and encryption keys.
KeyCloak
33KOpen source identity and access management. Add authentication to applications and secure services with minimum effort.