Skip to main content

Products

Kensa

CLI compliance engine with 508 rules, 23 remediation mechanisms, and automatic rollback. Scan, remediate, and roll back security configurations over SSH.

OpenWatch

Continuous compliance platform with dashboards, drift detection, adaptive scheduling, and audit-ready evidence. See everything, continuously.

Get started

Install Kensa

Get from zero to your first compliance scan in 10 minutes.

Deploy OpenWatch

Deploy with Docker, Podman, RPM, or from source.

API reference

80+ REST endpoints for automation and integration.

Supported frameworks

Both Kensa and OpenWatch support the following compliance frameworks from a single scan.
FrameworkMapping IDDescription
CIS RHEL 9 v2.0.0cis-rhel9-v2.0.0Center for Internet Security Benchmark
STIG RHEL 9 V2R7stig-rhel9-v2r7DISA Security Technical Implementation Guide
NIST 800-53 R5nist-800-53-r5NIST Security Controls
PCI-DSS v4.0pci-dss-v4.0Payment Card Industry Data Security Standard
FedRAMP Moderatefedramp-moderateFederal Risk and Authorization Management Program

Community

All documentation is hosted on GitHub. Contributions are welcome.

Kensa on GitHub

Source code, issues, and discussions.

OpenWatch on GitHub

Source code, issues, and discussions.