Skip to main content

FastAPI REST server + bundled React web UI for ControlBridge

Reason this release was yanked:

deprecated

Project description

controlbridge-api

FastAPI REST server and bundled React web UI for ControlBridge, the open-source GRC tool.

This package is not typically installed directly. The preferred way is via the [gui] extra on the meta-package:

uv tool install "controlbridge[gui]"
# or
pip install "controlbridge[gui]"

Then run:

controlbridge serve
# -> FastAPI + React UI at http://127.0.0.1:8000

What's inside

  • FastAPI app (controlbridge_api.app:app) — REST endpoints mirroring every CLI capability.
  • SPA — React/Vite/shadcn/ui frontend, bundled as static assets inside the wheel under controlbridge_api/static/.
  • SSE streaming — long-running LLM calls (risk generate, explain) stream progress to the browser without blocking.

REST surface

Every endpoint is typed with Pydantic models reused from controlbridge-core. All endpoints bind to 127.0.0.1 by default; --host 0.0.0.0 emits a security warning.

Method Path Purpose
GET /api/health Health probe
GET /api/version ControlBridge version info
GET /api/doctor Diagnostic summary
POST /api/doctor/check-air-gap Air-gap validator
GET /api/config Read controlbridge.yaml
PUT /api/config Write controlbridge.yaml
GET /api/frameworks List all 82 bundled catalogs
GET /api/frameworks/{id} Framework detail
GET /api/frameworks/{id}/controls/{control_id} Single control
POST /api/gap/analyze Run GapAnalyzer, save to gap store
GET /api/gap/reports List saved reports
GET /api/gap/reports/{key} Load a saved report
POST /api/gap/diff Compute diff between two reports
POST /api/risk/generate SSE: per-gap risk statement generation
POST /api/explain/{framework}/{control_id} Plain-English control explanation
POST /api/init/wizard Generate starter YAML files
GET /api/llm-status LLM provider configuration state

Air-gapped mode

Running controlbridge serve --offline wires the air-gap guard into every /api/* call. LLM features gracefully degrade with a pointer to Ollama. See docs/air-gapped.md.

Development

# From the repo root:
uv sync --all-packages
cd packages/controlbridge-ui && npm install && npm run dev  # Vite dev server at :5173
# In another terminal:
controlbridge serve --dev  # FastAPI at :8000 proxies /api/* to itself, / to Vite :5173

License

Apache-2.0 — see LICENSE.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

controlbridge_api-0.4.0.tar.gz (362.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

controlbridge_api-0.4.0-py3-none-any.whl (371.4 kB view details)

Uploaded Python 3

File details

Details for the file controlbridge_api-0.4.0.tar.gz.

File metadata

  • Download URL: controlbridge_api-0.4.0.tar.gz
  • Upload date:
  • Size: 362.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for controlbridge_api-0.4.0.tar.gz
Algorithm Hash digest
SHA256 ce6e08ec508999707ab5427033a2f9b8002bba0581336e9b988cf19f070032e5
MD5 2676cf7e61c8bf6c240ea7796f6520c9
BLAKE2b-256 b84fdbf847b14d21f12a15962c3e797a19e5d4693f43f7b3644ab72f7315c6bb

See more details on using hashes here.

File details

Details for the file controlbridge_api-0.4.0-py3-none-any.whl.

File metadata

File hashes

Hashes for controlbridge_api-0.4.0-py3-none-any.whl
Algorithm Hash digest
SHA256 9b6ec6e4d0ab2b3cd1eee29aa0e24573e3f1ce436d9d5da70a7b6e9917d12532
MD5 2d5d3c6fa0544ea6f382791727d25034
BLAKE2b-256 41b3c83522155e5eeeec61d72abdbfd0f79a5fe7daeb12bad0f4993428e4dfbe

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page