-
Notifications
You must be signed in to change notification settings - Fork 2
Quick Start
serbanb11 edited this page Apr 5, 2026
·
2 revisions
Get auditing in 5 minutes.
pip install -e ".[dev]"gws-auditor setup --subject admin@yourdomain.comThe wizard will:
- Detect your existing GCP credentials or service account
- Check/enable required APIs
- Generate
config.yaml - Guide you through the one manual step (domain-wide delegation)
- Validate connectivity
gws-auditorReports are saved to ./reports/ in HTML, JSON, and CSV formats.
# Interactive dashboard
pip install -e ".[dashboard]"
gws-auditor dashboard
# Open http://127.0.0.1:8050
# AI analyst
pip install -e ".[ai-anthropic]"
export ANTHROPIC_API_KEY="sk-ant-..."
gws-auditor analyst --provider anthropicIf you have an existing service account key:
gws-auditor setup --existing-sa-key credentials.json --subject admin@yourdomain.comOr configure manually:
# config.yaml
auth:
method: service_account
credentials_file: credentials.json
subject: admin@yourdomain.com
customer_id: autogws-auditor --validate # test connectivity
gws-auditor # run auditIf you don't have a config.yaml (e.g. using the standalone binary), you must pass both --credentials and --subject on the command line:
gws-auditor --credentials credentials.json --subject admin@yourdomain.com
# Standalone binary
./gws-auditor-linux-amd64 --credentials credentials.json --subject admin@yourdomain.comNote:
--subjectis the super-admin email used for domain-wide delegation. Without it, all API calls will fail with permission/not-found errors.