-
-
Notifications
You must be signed in to change notification settings - Fork 0
Home
Welcome to the Aegis wiki! This wiki contains project documentation that syncs with the repository.
Aegis is a high-performance security scanning tool for DevOps, CI/CD pipelines, and AI systems. Built in Rust for maximum speed and reliability.
Key Features:
- 660 patterns across 34 categories (browse the pattern catalog)
- Multi-format output: JSON, SARIF, plain text
- MCP server for AI assistant integration
- CI/CD integration (GitHub Actions, GitLab, Jenkins, Azure)
- Risk scoring and intelligent prioritization
- Custom patterns via
.aegis.ymlin the scan root, or YAML bundled withaegis-bundler - Statistical anomaly observations (comment concentration, identifier reuse, size outliers) reported as info-level findings that never fail CI
Latest release — every release ships these assets:
| Platform | Asset |
|---|---|
| Linux x86_64 | aegis-linux-x86_64.tar.gz |
| Linux arm64 | aegis-linux-arm64.tar.gz |
| macOS Apple Silicon | aegis-darwin-arm64.tar.gz |
| macOS Intel | aegis-darwin-x86_64.tar.gz |
| Windows x86_64 | aegis-windows-x86_64.tar.gz |
| WebAssembly | aegis_wasm.wasm |
Each tarball contains the aegis CLI plus the aegis-mcp, aegis-daemon, and aegis-bundler binaries; checksums.txt covers every artifact.
See the Sidebar for navigation, or browse:
- Getting Started - Installation and first steps
- Pattern Development - Writing custom patterns
- Troubleshooting - Common issues and solutions
GitHub wikis cannot link into the repository with relative paths, so repository links below are absolute.
| Document | Location |
|---|---|
| README | README.md |
| User Guides | docs/guides/ |
| Architecture | docs/architecture/OVERVIEW.md |
| Pattern Catalog | docs/patterns/README.md |
| Building from Source | docs/guides/BUILDING.md |
| Changelog | CHANGELOG.md |
Counts are generated from the shipped pattern corpus; the catalog is canonical.
- 670 detection patterns
- 34 pattern categories (68 critical, 145 high, 188 medium, 269 low)
- 7 workspace crates: aegis-core, aegis-cli, aegis-mcp, aegis-daemon, aegis-bundler, aegis-patterns, aegis-wasm
- 4 configuration presets: production, pipeline, development, mcp-integration
- 100% Rust implementation
| Resource | Link |
|---|---|
| Documentation | docs/ |
| GitHub Repository | aliasfoxkde/aegis |
| Issue Tracker | Report Issues |
| Discussions | GitHub Discussions |
| Pattern Catalog | 660 patterns across 34 categories |
Aegis is an open-source security scanning tool.
Aegis is provided as-is for security scanning purposes. While it aims to detect security issues accurately, it may produce false positives and negatives. Always validate findings manually. The developers are not liable for any damages resulting from use of this tool.
See Releases for the current version and the changelog for what shipped in each. The pattern catalog is generated from the source and always reflects the shipped rule set.
Built with Rust for performance and reliability.
- Installation Guide - Binary releases, Docker
- Quick Start - Basic workflows
- CLI Reference - All commands
- Configuration - Profiles and options
- CI/CD Integration - GitHub, GitLab, Jenkins
- MCP Server - AI tool integration
- Building from Source - Contributor setup
- Adding Patterns - Rust and YAML contribution
- Architecture - System design
- Coding Standards - Rust conventions
- Pattern Catalog - All 660 patterns, one detail page per category
- Secrets - API keys, credentials
- Security Hardening - Security best practices
- Web Security - XSS, injection, CORS, SSRF
- AI Safety - Agentic and LLM safety checks
- Project Plan - Roadmap and milestones
- Changelog
- Releases