Demo · sample data, not for production use · request the real tool →

Collections

Each collection is a YAML-defined evidence pull bound to one connector and a list of control codes. The runner executes them on a schedule; every artifact is hashed and retention-locked.

Collections
5
5 enabled
Runs (14d)
1654
Items (14d)
3559
Stored (14d)
1.85 GB
ConnectorCollectionLast runRunsItemsBytes
AWS IAM

Daily inventory of IAM users, roles, and access-key age. Surfaces stale keys and over-privileged accounts.

AC-2AC-6IA-5NIST 800-171FedRAMP Moderate
succeeded14425.9 MB
Filesystem

Watches a staging directory for files dropped by control owners. The escape hatch when a system has no API.

DOC-1AC5 Internal
succeeded129926531.83 GB
GitHub

Daily snapshot of branch-protection rules across every org repo. Catches the day someone disables required reviews.

CM-3CM-5SA-10NIST 800-171SOC 2
succeeded145481.5 MB
Microsoft 365

Hourly export of M365 unified audit log filtered to admin actions. Becomes invaluable during incident response.

AU-2AU-3AU-12NIST 800-171ISO 27001
succeeded32531410.0 MB
Okta

Weekly MFA-enrollment report from Okta. The first thing every audit asks for. Hashes the CSV and pins it against AC-2, AC-7, IA-2.

AC-2AC-7IA-2NIST 800-171ISO 27001
succeeded2283.4 KB