StackAudit is a high-performance, developer-first CLI tool designed to audit your backend project's health, security, and infrastructure readiness in seconds. It runs entirely locally, ensuring your secrets never leave your machine.
- Professional TUI: A clean, interactive terminal interface for real-time system monitoring and project auditing.
- Secrets Detection: Advanced scanning for hardcoded API keys, tokens, and credentials.
- Docker Security: Deep analysis of Dockerfiles and Compose files for security best practices.
- Kubernetes Readiness: Audit your Kubernetes manifests for resource limits and security contexts.
- Extensible Plugins: Add team-specific standards using simple YAML rule sets.
- High Performance: Built in Go with high-concurrency module execution.
Download the latest binary for your operating system from the Releases page.
Get up and running in seconds with our automated installers. These scripts will download the latest version, install it, and configure your system path automatically.
iwr https://raw.githubusercontent.com/neutron420/StackAudit/main/scripts/install.ps1 | iexcurl -sSL https://raw.githubusercontent.com/neutron420/StackAudit/main/scripts/install.sh | shgo install github.com/neutron420/stack/cmd/stack@latestnpm install -g @riteshkumar04/stack-audit| OS | Architecture | Status |
|---|---|---|
| Windows | x86_64, arm64, 386 | Fully Supported |
| macOS | Apple Silicon (arm64), Intel (x86_64) | Fully Supported |
| Linux | All Distros (x86_64, arm64, 386) | Fully Supported |
Run the Interactive Workbench:
stackRun a specific scan:
stack scan redisStackAudit works out of the box, but can be customized with a .stack.yaml file:
rule_packs:
- strict
output: table
min_severity: warning
plugins:
- .stack/plugins/team.yamlWe welcome contributions. Whether it is a new scanner module or a bug fix, feel free to open a Pull Request.
- Fork the repository
- Create a feature branch (
git checkout -b feature/amazing-feature) - Commit your changes (
git commit -m 'Add amazing feature') - Push to the branch (
git push origin feature/amazing-feature) - Open a Pull Request
Distributed under the MIT License. See LICENSE for more information.
Built for developers who care about production health.