Skip to main content

Docker infrastructure audit tool

Project description

DockAudit Logo

DockAudit

The Ultimate Pulse for your Docker Infrastructure.
Audit, Secure, and Monitor your containers in seconds.

License Latest Release GitHub stars


Most Docker infrastructures are misconfigured. DockAudit is a production-grade security auditing tool that unifies container security, performance optimization, and reliability checks into a single, fast interface. Inspired by CIS Docker Benchmarks and powered by real-time intelligence.

Quick Start (CLI)

Audit your entire local environment with one command:

docker run \
  -v /var/run/docker.sock:/var/run/docker.sock \
  ercdockercr/dockaudit scan

Or install via Pip:

pip install dockaudit
dockaudit scan

V1.0.2: DockAudit Dashboard

Experience real-time monitoring with our new high-fidelity dashboard. Designed with a DevSecOps-centric Glassmorphism aesthetic, it provides deep visibility into your operational intelligence.

Global Score • Security Trends • Reliability Metrics • Automated Audits

Deployment

Deploy the full monitoring stack (Frontend + Backend + DB) using Docker Compose:

# Production Deployment
docker-compose up -d

# Development & Local Build
docker-compose -f docker-compose-dev.yml up --build

Access the dashboard at http://localhost:3000.


Key Features

  • Multi-Vector Security Scan: Previleged flags, root capabilities, read-only filesystems, and host-breakout risks.
  • CVE Intelligence: Integrated with the official Google OSV API for real-time vulnerability detection in image layers.
  • Performance Tuning: Automatically detects missing resource limits (CPU/Memory) and potential sizing issues.
  • Reliability Audit: Validates restart policies, healthchecks, and orchestration best practices.
  • Secret Detection: Scans environment variables for leaked credentials, tokens, and sensitive data.
  • Infrastructure Scoring: Provides actionable KPIs and letter-grade scoring for your entire setup.
  • DevOps Native: Export findings to SARIF or JSON for seamless integration with GitHub Security or custom pipelines.

🛠️ Development

  1. Clone: git clone https://github.com/Erico-MR/dockaudit
  2. Setup: pip install -e .
  3. Explore: dockaudit --help

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

dockaudit-1.0.1.tar.gz (12.5 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

dockaudit-1.0.1-py3-none-any.whl (14.3 kB view details)

Uploaded Python 3

File details

Details for the file dockaudit-1.0.1.tar.gz.

File metadata

  • Download URL: dockaudit-1.0.1.tar.gz
  • Upload date:
  • Size: 12.5 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.13.7

File hashes

Hashes for dockaudit-1.0.1.tar.gz
Algorithm Hash digest
SHA256 fae3d3d29abc626d514fffccd974914f859087469ff68ef1ea4565183805ba0b
MD5 ce5d72e45665f890fee02c8df8364486
BLAKE2b-256 cba32afc1fa899a6937f4d01a4cb85e7c12d617e406d889d713ae20317fc3620

See more details on using hashes here.

File details

Details for the file dockaudit-1.0.1-py3-none-any.whl.

File metadata

  • Download URL: dockaudit-1.0.1-py3-none-any.whl
  • Upload date:
  • Size: 14.3 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.13.7

File hashes

Hashes for dockaudit-1.0.1-py3-none-any.whl
Algorithm Hash digest
SHA256 3e3407be2b12f0803c8d9736665414cf956f3166c5a385b68bea9ee28249dbfd
MD5 d25cb272d70d2220d77072b7396d0a77
BLAKE2b-256 13ed7404cd68e4a00080a7ec6a68b62675c926edce5351657d834f7f0f251b34

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page