From 52e58301be73acd5299554ec3ed6567d0890fb4c Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Wed, 30 Sep 2026 22:29:01 +0000 Subject: [PATCH] docs: refresh learn page and README statistics Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> --- README.md | 8 ++++---- docs/learn/index.html | 46 +++++++++++++++++++++---------------------- 2 files changed, 27 insertions(+), 27 deletions(-) diff --git a/README.md b/README.md index 9c5eb15b..043369af 100644 --- a/README.md +++ b/README.md @@ -74,10 +74,10 @@ Findings map to NIST FIPS 203 (ML-KEM), FIPS 204 (ML-DSA), and FIPS 205 (SLH-DSA | Feature | Description | |---|---| -| **Misconfiguration Scanner** | Runs 95 Azure security rules across storage, network, identity, database, compute, Key Vault, AKS, Kubernetes workloads, post-quantum cryptography, backup, serverless, private endpoint, and supply chain posture | +| **Misconfiguration Scanner** | Runs 144 Azure security rules across storage, network, identity, database, compute, Key Vault, AKS, Kubernetes workloads, post-quantum cryptography, backup, serverless, private endpoint, and supply chain posture | | **Compliance Mapper** | Maps findings to CIS Benchmarks, NIST CSF, ISO 27001, and SOC 2 framework JSON files | | **Scan History API** | Stores scans and findings in PostgreSQL and exposes findings, score, scan history, compliance posture, drift, and resource inventory over REST | -| **Remediation Playbooks** | Every documented rule ships with a matching review-gated remediation script (95 playbooks) | +| **Remediation Playbooks** | Every documented rule ships with a matching review-gated remediation script (144 playbooks) | | **Security Dashboard** | Full React dashboard deployed on Vercel - live monitoring, findings, compliance, drift, prioritization, and AI-layer views | | **Project Website** | Documentation and reference site at [owasp.github.io/openshield](https://owasp.github.io/openshield/) - blog, rules gallery, architecture, evidence guides, roadmap, and releases | | **Sentinel Integration** | Normalises findings and pushes them into Microsoft Sentinel via a Log Analytics custom table and KQL analytics rules | @@ -120,11 +120,11 @@ Project policies and assurance evidence: flowchart TD A["React Dashboard\nVercel · Live"] B["Flask REST API\nJWT · CORS · Blueprints"] - C["Scanner Engine\n95 Python rules"] + C["Scanner Engine\n144 Python rules"] D["Azure Subscription\nScanned via Azure SDK + Graph"] E["Compliance Framework JSON\nCIS · NIST · ISO 27001 · SOC 2"] F["PostgreSQL Database\nFindings · Scans"] - G["Azure CLI Playbooks\n95 remediation scripts"] + G["Azure CLI Playbooks\n144 remediation scripts"] H["sentinel/ingest.py\nNormalise + HMAC upload"] I["Microsoft Sentinel\nOpenShieldFindings_CL · KQL rules"] diff --git a/docs/learn/index.html b/docs/learn/index.html index 745f276e..e73f4129 100644 --- a/docs/learn/index.html +++ b/docs/learn/index.html @@ -753,7 +753,7 @@

Learn Azure security posture with OpenShield.

openshield scan --subscription Azure

-

loading rules: 95 dynamic checks

+

loading rules: 144 dynamic checks

enrichment: NVD / CVE intelligence

storage: PostgreSQL scan history

api: Flask + JWT + CORS

@@ -765,11 +765,11 @@

Learn Azure security posture with OpenShield.
-
95Azure scan rules
-
95CLI remediation playbooks
+
144Azure scan rules
+
144CLI remediation playbooks
4Compliance frameworks
8AI security skills
-
58High-severity checks
+
95High-severity checks
@@ -822,7 +822,7 @@

Production-shaped, MVP-friendly architecture

Azure SubscriptionResources and configuration
Scanner EnginePython rule execution
-
Rule Evaluation95 dynamic checks
+
Rule Evaluation144 dynamic checks
CVE EnrichmentNVD risk context
PostgreSQLFindings and scan history
Flask APIJWT-protected REST routes
@@ -842,9 +842,9 @@

Production-shaped, MVP-friendly architecture

Rule coverage

-

95 Azure security rules

+

144 Azure security rules

- OpenShield currently has 95 dynamic rules. The strongest contributor work improves rule accuracy, reduces false positives, + OpenShield currently has 144 dynamic rules. The strongest contributor work improves rule accuracy, reduces false positives, strengthens validation, or improves remediation quality.

@@ -852,19 +852,19 @@

95 Azure security rules

Coverage by category

-
Network
23
-
Identity
15
-
Security Operations
10
-
Supply Chain
8
-
KeyVault
6
-
Kubernetes
6
-
Serverless
5
-
Storage
5
-
Backup
4
-
Compute
4
-
Database
4
-
PostQuantum
3
-
Data Link
2
+
Network
35
+
Identity
25
+
Kubernetes
21
+
Security Operations
10
+
Storage
10
+
Database
8
+
Supply Chain
8
+
Compute
7
+
KeyVault
6
+
Serverless
5
+
Backup
4
+
PostQuantum
3
+
Data Link
2
@@ -872,9 +872,9 @@

Coverage by category

Severity distribution

Most checks are high severity. That makes validation important: high-severity false positives damage trust quickly.

-
0CRITICAL
-
58HIGH
-
31MEDIUM
+
5CRITICAL
+
95HIGH
+
40MEDIUM
4LOW