Skip to content
@oscal-compass

oscal-compass

OSCAL Compass Logo OSCAL Compass

The OSCAL Compass project is set of tools that enable the creation, validation, and governance of documentation artifacts for compliance needs. It leverages NIST's OSCAL (Open Security Controls Assessment Language) as a standard data format for interchange between tools and people, and provides an opinionated approach to OSCAL adoption.

Get Started with OSCAL Compass

Check out the Community README to get started with using and contributing to the project. The REAMDE also details all the ways to collaborate with project maintainers and your fellow users of OSCAL Compass tools.

Learn about the projects

Trestle - Command line tool and SDK for interacting with OSCAL-based documents

Agile Authoring - Ready to use CI/CD pipeline configuration and setup using a GitOps approach with Trestle for OSCAL document management and collaboration.

Compliance to Policy (AKA C2P) - C2P bridges compliance-as-code defined in OSCAL and policy validation points (PVP) to generate OSCAL-based results

Quick Links

Website

https://oscal-compass.github.io

Note: This has Trestle specific information

Read the Blogs

Personas and Roles
Trestle SDK
Artifacts and Personas
Topologies of Compliance Policy Administration Centers
A Lack of Network Boundaries Invites a Lack of Compliance
Compliance to Policy for Multiple Kubernetes Clusters

Pinned

  1. compliance-trestle compliance-trestle Public

    An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.

    Python 150 53

  2. compliance-to-policy compliance-to-policy Public

    Compliance-to-Policy (C2P) provides the framework to bridge the gap between compliance and policy administration.

    Go 15 9

  3. compliance-trestle-agile-authoring compliance-trestle-agile-authoring Public

    Agile authoring tutorial and repo set-up tooling

    Python 14

  4. community community Public

    OSCAL Compass community-wide collaboration space

Repositories

Showing 10 of 12 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…