blackfyre
https://github.com/blackfyre-security/blackfyre
TypeScript
Open-source multi-cloud compliance & security platform — scan AWS/Azure/GCP against 678 controls across 9 frameworks (SOC 2, ISO 27001, HIPAA, GDPR, PCI-DSS, NIST…) with tamper-evident evidence
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
TypeScript not yet supported1 Subscribers
Add a CodeTriage badge to blackfyre
Help out
- Issues
- ci(security): add gitleaks secret-scanning workflow, pre-commit hook, and repo-security helper
- Bring the full integration suite to a green, CI-enforced baseline
- Expand MITRE ATT&CK technique coverage beyond the curated ~46
- Add a `docker compose --profile full` that also runs the API
- Portal/admin accessibility (a11y) linting and tests
- `request.db.transaction()` is unsupported on reserved connections — add a guard
- Local (non-Lambda) execution path for the Prowler / IaC container scanners
- Plugin API for third-party scanner registration
- Community-contributed compliance frameworks (data, not code)
- Dependency majors: Fastify 5 chain, Next 15+, drizzle-orm 0.45.2, nodemailer 7
- Docs
- TypeScript not yet supported