# SecurityFTW/cs-suite

Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.

Repository: https://github.com/SecurityFTW/cs-suite
Canonical: https://ross.abutalabs.com/products/cs-suite
Language: Shell
License: GPL-3.0
License Family: copyleft
Topics: aws-security, security-audit, cloud-security, gcp-audit-report, gcp, aws-audit, security, azure-security, azure, azure-audit, security-tools
Last push: 2022-12-08T00:45:51+00:00

## Health v2 (maintenance only)
Score: 32/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 0, release rhythm 35, longevity 100
- inputs: {"age_days": 3304, "days_push": 1365, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1171, forks 209 (observed 2026-08-28T04:03:51.441550+00:00)

## What it is
Cloud Security Suite (cs-suite) is a command-line audit tool that checks the security posture of AWS, GCP, Azure, and DigitalOcean accounts from read-only credentials. It combines cloud configuration checks with OS-level Lynis audits over SSH and can write JSON logs suitable for ingestion into SIEMs like ELK and Splunk.

## Use cases
- audit the security posture of my aws account
- check gcp project for security misconfigurations
- run a security audit on azure infrastructure
- find misconfigurations across cloud environments from one tool
- generate cloud audit reports in json for splunk or elk
- run lynis os-level audits on cloud instances

## When to choose
- You want a single open-source tool to audit AWS, GCP, Azure, or DigitalOcean configurations and produce a report
- You need JSON-formatted audit logs to feed into a SIEM like ELK or Splunk
- You work on Linux or macOS and are comfortable running Python 2.7-based tooling

## When to avoid
- You need actively maintained tooling or Python 3 support - the project requires Python 2.7 and its last release was in late 2022
- You want continuous cloud security posture monitoring rather than on-demand point-in-time audits
- You need Windows support - only OSX and Linux are supported

## Facets
- artifact type: cli-tool
- maturity: abandoned
- function: security, vulnerability-scanning, cli
- domain: security, cloud-computing
- platform: cli, python
- tags: aws, gcp, azure, digitalocean, security-audit, cloud-security-posture, lynis, siem-logging, misconfiguration-detection, devops, linux, macos

## Member repositories
- SecurityFTW/cs-suite (main) score 32

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:03:51.441550+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T06:28:30.174251+00:00, confidence not recorded.
  - readme: https://github.com/SecurityFTW/cs-suite (fetched 2026-08-28T04:03:51.441550+00:00, sha c26597f7998d)
- Data as of 2026-08-30T08:39:29.467469+00:00.
