Skip to content
@mondoohq

Mondoo Inc

Cloud-Native Security & Vulnerability Management

Hi, fellow open source lovers 👋

An illustration showing a space kitty dreaming of exploring new worlds with Mondoo

We’re excited that you landed on our GitHub page!

Check out our open source projects 👐

🐈 cnquery is a cloud-native tool for querying your entire fleet.

🐈‍⬛ cnspec is a cloud-native solution to assess the security and compliance of your business-critical infrastructure.

Don't miss our enterprise platform 👑

The Mondoo unified security platform finds and prioritizes vulnerabilities and misconfigurations that pose the highest risk to your business. Mondoo's security data fabric analyzes the threat and exposure of every finding within the unique context of your infrastructure. Instead of a flood of irrelevant security alerts, Mondoo shows you how you can make an immediate and significant impact on your security posture.

What does Mondoo help you do? 😀

📌 Prioritize the issues that present the greatest risk to your infrastructure

🏗 Build security into the development process from the start

🌊 Eliminate the flood of irrelevant security alerts

🤝 Enlist the DevOps team to help secure your company

⏳ Save time and friction during audit cycles

🧰 Avoid tool sprawl

🎯 Make an immediate and significant impact on your security posture

Check out the mondoohq/samples repository to see sample use cases of cnquery and cnspec in action!

Wait, who is Mondoo? 🤔

Mondoo was founded in 2020 by DevOps and security experts who previously founded InSpec, devsec.io, and OpenStack.

What we believe:

  • Security needs to happen at the code level

  • Security needs to be more developer friendly

  • Security needs to be seen as beneficial, not burdensome

We built Mondoo so that DevOps and Security practitioners can work together to automate their security and compliance for all types of infrastructure with a single, easy-to-use platform featuring: 👉 policy as code 👈

Give us a spin 👍

Try Mondoo for free before you make any commitment! No sales pitch or demo required –- it’s hands on from the start. Begin improving your security posture now, in minutes instead of months.

❇️ Get started with Mondoo. Book a demo: https://mondoo.com/contact

🧑‍💻 Learn how it works: https://mondoo.com/docs/

Pinned Loading

  1. cnquery cnquery Public

    open source, cloud-native, graph-based asset inventory

    Go 320 21

  2. cnspec cnspec Public

    An open source, cloud-native security to protect everything from build to runtime

    Go 275 13

  3. cnquery-packs cnquery-packs Public

    This repository contains query packs for cnquery maintained by Mondoo and the cnquery community.

    HCL 25 2

  4. cnspec-policies cnspec-policies Public

    This repository contains security policies for cnspec maintained by Mondoo and the cnspec community.

    HCL 43 17

  5. mondoo-operator mondoo-operator Public

    ☸️ Mondoo Client Kubernetes Operator

    Go 36 13

  6. samples samples Public

    Security Scanning Samples with cnspec, cnquery, and Mondoo Platform

    HCL 14 1

Repositories

Showing 10 of 25 repositories
  • cnspec-policies Public

    This repository contains security policies for cnspec maintained by Mondoo and the cnspec community.

    mondoohq/cnspec-policies’s past year of commit activity
    HCL 43 17 18 3 Updated Nov 17, 2024
  • mondoo-go Public

    Go library for the Mondoo API.

    mondoohq/mondoo-go’s past year of commit activity
    Go 2 0 1 4 Updated Nov 17, 2024
  • docs Public

    Mondoo Documentation

    mondoohq/docs’s past year of commit activity
    JavaScript 3 MPL-2.0 1 3 3 Updated Nov 17, 2024
  • installer Public

    Linux, macOS and Windows Install scripts for cnquery & cnspec

    mondoohq/installer’s past year of commit activity
    PowerShell 86 14 9 1 Updated Nov 17, 2024
  • cnquery Public

    open source, cloud-native, graph-based asset inventory

    mondoohq/cnquery’s past year of commit activity
    Go 320 21 243 25 Updated Nov 17, 2024
  • spellcheck-dictionary Public

    A dictionary of common words used in Mondoo repos

    mondoohq/spellcheck-dictionary’s past year of commit activity
    1 MPL-2.0 1 0 0 Updated Nov 17, 2024
  • cnspec Public

    An open source, cloud-native security to protect everything from build to runtime

    mondoohq/cnspec’s past year of commit activity
    Go 275 13 75 7 Updated Nov 15, 2024
  • mondoo-operator Public

    ☸️ Mondoo Client Kubernetes Operator

    mondoohq/mondoo-operator’s past year of commit activity
    Go 36 13 37 1 Updated Nov 15, 2024
  • homebrew-mondoo Public

    Mondoo Homebrew Tap

    mondoohq/homebrew-mondoo’s past year of commit activity
    Go 6 1 1 1 Updated Nov 14, 2024
  • packer-plugin-cnspec Public

    Packer plugin cnspec by Mondoo - Build machine images free of security misconfigurations and vulnerabilities!

    mondoohq/packer-plugin-cnspec’s past year of commit activity
    Go 27 5 2 3 Updated Nov 14, 2024