Commit 40cd675c43
40cd675c432a3ab39b434bc49c3376b60a6ca306
parent: cb8640beec
Unsigned
cmc <hello@cleberg.net> · 2026-08-08 03:52 UTC
Release v1.0.0
Bump version to 1.0.0, add CHANGELOG, and document the stability commitment.
Layout: unified · split
CHANGELOG.md
added
+27
| @@ -0,0 +1,27 @@ |
| |
1 | # Changelog |
| |
2 | |
| |
3 | All notable changes to this project are documented here. The format is based on |
| |
4 | [Keep a Changelog](https://keepachangelog.com/en/1.1.0/), and this project adheres |
| |
5 | to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). |
| |
6 | |
| |
7 | ## [1.0.0] - 2026-08-07 |
| |
8 | |
| |
9 | First tagged release. Prior work was untagged; this marks the collection as stable |
| |
10 | and gives engagements an exact revision to pin to. |
| |
11 | |
| |
12 | ### Added |
| |
13 | |
| |
14 | - Interactive terminal UI (`audit_tui.py`) that runs audits against GitHub, |
| |
15 | GitLab, and AWS — pick a platform, enter connection details, choose checks, and |
| |
16 | watch live progress. |
| |
17 | - Evidence collectors and security-posture checks for GitHub (branch protection |
| |
18 | and rulesets, audit log), GitLab, and AWS (account, network, logging, password |
| |
19 | policy, S3). |
| |
20 | - Database access collectors (MySQL, Postgres, MongoDB) and OS-level checks. |
| |
21 | - Reproducible audit sampling CLI plus a standalone HTML sampling tool. |
| |
22 | - Dependency extras (`analysis`, `dashboards`, `aws`, `collectors`, `mongo`, |
| |
23 | `tui`, `all`, `dev`) so a locked-down auditing laptop installs only what a |
| |
24 | procedure needs. |
| |
25 | - CodeQL and Ruff CI. |
| |
26 | |
| |
27 | [1.0.0]: https://github.com/audit-labs/audit-tools/releases/tag/v1.0.0 |
README.org
+6
| @@ -89,6 +89,12 @@ check plus a summary — with a progress bar and per-check results: |
| 89 | |
89 | |
| 90 | See =tui/README.md= for details. GitHub, GitLab, and AWS are supported. |
90 | See =tui/README.md= for details. GitHub, GitLab, and AWS are supported. |
| 91 | |
91 | |
| |
92 | ** Stability |
| |
93 | |
| |
94 | *Audit Tools* is stable as of *v1.0.0*. It is a curated collection of runnable |
| |
95 | scripts and an interactive TUI rather than an importable library, so each release |
| |
96 | is tagged to give an engagement an exact revision to pin to. |
| |
97 | |
| 92 | ** Contributing |
98 | ** Contributing |
| 93 | |
99 | |
| 94 | Contributions are welcome. You can contribute by: |
100 | Contributions are welcome. You can contribute by: |
pyproject.toml
+1 −1
| @@ -4,7 +4,7 @@ build-backend = "setuptools.build_meta" |
| 4 | |
4 | |
| 5 | [project] |
5 | [project] |
| 6 | name = "audit-tools" |
6 | name = "audit-tools" |
| 7 | version = "0.1.0" |
7 | version = "1.0.0" |
| 8 | description = "Scripts for programmatically gathering IT audit evidence from cloud, source control, databases, and operating systems." |
8 | description = "Scripts for programmatically gathering IT audit evidence from cloud, source control, databases, and operating systems." |
| 9 | readme = { file = "README.org", content-type = "text/plain" } |
9 | readme = { file = "README.org", content-type = "text/plain" } |
| 10 | requires-python = ">=3.10" |
10 | requires-python = ">=3.10" |