Ross ROSS = Recommend OSS · open-source software intelligence for agents

ComplianceAsCode/content resource

Security automation content in SCAP, Bash, Ansible, and other formats observed · 2026-08-28

github.com/ComplianceAsCode/content · homepage · Shell · NOASSERTION (other) observed · 2026-08-28

Health v2 · maintenance only

86/100

  • Activity 99
  • Release rhythm 62
  • Longevity 100

Flags: no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: 96.0
  • age_days: 4509
  • days_rel: 93
  • days_push: 7
  • n_releases_24m: 7

Full methodology

Adoption not part of the score

2791 stars · 819 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A collection of machine-readable security policy content for platforms like RHEL, Fedora, Ubuntu, and products like Firefox, expressed in SCAP (XCCDF, OVAL), Ansible, Bash, and CEL formats. It enables automated compliance scanning and remediation against standards such as PCI-DSS, STIG, and OSPP.

Use cases

  • scan linux servers for compliance with pci-dss or stig
  • generate ansible playbooks to harden a system
  • remediate security configuration drift with bash scripts
  • produce scap data streams for compliance auditing
  • check kubernetes cluster compliance with cel policies
  • automate security baseline enforcement across a fleet

When to choose

  • you need standardized SCAP/XCCDF compliance content for common Linux distributions
  • you want automated remediation playbooks for security baselines
  • you must meet regulatory profiles like PCI-DSS, STIG, or OSPP

When to avoid

  • you need a scanning engine itself rather than content (use OpenSCAP or similar)
  • you need compliance content for platforms not covered by the project
  • you want a point-and-click compliance dashboard

Facets

dataset · maturity active

security configuration-management developer-tools security legal self-hosted cloud scap xccdf oval security-hardening compliance-automation ansible-playbooks stig pci-dss openscap devops automation linux

1 source

Member repositories

RepositoryRoleHealth v2
ComplianceAsCode/contentmain86

For agents

markdown · JSON · MCP: product_card(name="ComplianceAsCode/content")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem