Commit 40cd675c43
40cd675c432a3ab39b434bc49c3376b60a6ca306
parent: cb8640beec
Unsigned
cmc <hello@cleberg.net> · 2026-08-08 03:52 UTC
Release v1.0.0
Bump version to 1.0.0, add CHANGELOG, and document the stability commitment.
Layout: unified · split
CHANGELOG.md
added
+27
| @@ -0,0 +1,27 @@ |
| 1 | # Changelog |
| 2 | |
| 3 | All notable changes to this project are documented here. The format is based on |
| 4 | [Keep a Changelog](https://keepachangelog.com/en/1.1.0/), and this project adheres |
| 5 | to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). |
| 6 | |
| 7 | ## [1.0.0] - 2026-08-07 |
| 8 | |
| 9 | First tagged release. Prior work was untagged; this marks the collection as stable |
| 10 | and gives engagements an exact revision to pin to. |
| 11 | |
| 12 | ### Added |
| 13 | |
| 14 | - Interactive terminal UI (`audit_tui.py`) that runs audits against GitHub, |
| 15 | GitLab, and AWS — pick a platform, enter connection details, choose checks, and |
| 16 | watch live progress. |
| 17 | - Evidence collectors and security-posture checks for GitHub (branch protection |
| 18 | and rulesets, audit log), GitLab, and AWS (account, network, logging, password |
| 19 | policy, S3). |
| 20 | - Database access collectors (MySQL, Postgres, MongoDB) and OS-level checks. |
| 21 | - Reproducible audit sampling CLI plus a standalone HTML sampling tool. |
| 22 | - Dependency extras (`analysis`, `dashboards`, `aws`, `collectors`, `mongo`, |
| 23 | `tui`, `all`, `dev`) so a locked-down auditing laptop installs only what a |
| 24 | procedure needs. |
| 25 | - CodeQL and Ruff CI. |
| 26 | |
| 27 | [1.0.0]: https://github.com/audit-labs/audit-tools/releases/tag/v1.0.0 |
README.org
+6
| @@ -89,6 +89,12 @@ check plus a summary — with a progress bar and per-check results: |
| 89 | 89 | |
| 90 | 90 | See =tui/README.md= for details. GitHub, GitLab, and AWS are supported. |
| 91 | 91 | |
| 92 | ** Stability |
| 93 | |
| 94 | *Audit Tools* is stable as of *v1.0.0*. It is a curated collection of runnable |
| 95 | scripts and an interactive TUI rather than an importable library, so each release |
| 96 | is tagged to give an engagement an exact revision to pin to. |
| 97 | |
| 92 | 98 | ** Contributing |
| 93 | 99 | |
| 94 | 100 | Contributions are welcome. You can contribute by: |
pyproject.toml
+1 −1
| @@ -4,7 +4,7 @@ build-backend = "setuptools.build_meta" |
| 4 | 4 | |
| 5 | 5 | [project] |
| 6 | 6 | name = "audit-tools" |
| 7 | | version = "0.1.0" |
| 7 | version = "1.0.0" |
| 8 | 8 | description = "Scripts for programmatically gathering IT audit evidence from cloud, source control, databases, and operating systems." |
| 9 | 9 | readme = { file = "README.org", content-type = "text/plain" } |
| 10 | 10 | requires-python = ">=3.10" |