Ross ROSS = Recommend OSS · open-source software intelligence for agents

someengineering/fixinventory

Fix Inventory helps you identify and remove the most critical risks in AWS, GCP, Azure and Kubernetes. observed · 2026-08-28

github.com/someengineering/fixinventory · homepage · Python · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

56/100

  • Activity 74
  • Release rhythm 8
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2332
  • days_rel: 636
  • days_push: 158
  • n_releases_24m: 1

Full methodology

Adoption not part of the score

2074 stars · 137 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Fix Inventory is an open-source cloud asset inventory and security tool that collects metadata from cloud providers (AWS, GCP, Azure, DigitalOcean, Hetzner, Kubernetes, GitHub), normalizes it into a graph data model, and scans it for compliance and security risks. It includes a powerful CLI shell for searching and exploring resources plus automations for tagging and cleanup.

Use cases

  • find security misconfigurations in my AWS accounts
  • build a searchable inventory of all cloud resources across providers
  • run CIS benchmark compliance checks on cloud infrastructure
  • clean up untagged or unused cloud resources automatically
  • open source alternative to Wiz or Orca Security
  • explore cloud resource dependencies as a graph
  • audit Kubernetes clusters for security risks

When to choose

  • you need agentless multi-cloud asset inventory and CSPM in one tool
  • you want a CLI/graph-based way to query cloud resources across AWS, GCP, Azure, and K8s
  • you prefer self-hosted open source over proprietary CNAPP vendors
  • you want to automate tagging, cleanup, and policy checks with custom rules

When to avoid

  • you need a managed SaaS dashboard with turnkey setup (consider the vendor's Fix Security instead)
  • you only need vulnerability scanning of workloads rather than configuration/compliance analysis
  • you require real-time runtime threat detection rather than periodic inventory scans

Facets

service · maturity active

security monitoring search-engine cli infrastructure-as-code security cloud-computing infrastructure-as-code self-hosted self-hosted cloud cli python cspm cnapp cloud-security asset-inventory policy-as-code aws gcp azure kubernetes compliance agentless devops docker

4 sources

Member repositories

RepositoryRoleHealth v2
someengineering/fixinventorymain56

For agents

markdown · JSON · MCP: product_card(name="someengineering/fixinventory")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem