Skip to content

Fort

v0.1.0 Feature

This release adds 3 notable features for engineering teams evaluating rollout.

Published 2mo Secrets & Credentials
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

audit claude claude-code claude-code-plugin cli compliance
+12 more
security endpoint-security go hardening homebrew iso27001 mac-security macos macos-security security-audit security-tools soc2

Summary

AI summary

Initial public release runs 15 macOS security checks and produces an HTML evidence report.

Full changelog

Initial release

fort's first public release. Runs 15 security checks on macOS, maps every finding to SOC 2 / ISO 27001 / NIST CSF / CIS v8, and produces a self-contained HTML evidence report.

  • 15 checks across disk encryption, screen lock, firewall, Gatekeeper, SIP, SSH, AirDrop, guest account, auto-login, automatic updates, OS version, antivirus, password manager, local admin, and sharing services
  • fort --fix to remediate fixable gaps (with confirmation)
  • fort --dry-run to preview what a fix would change
  • fort --json for machine-readable output (CI / scripting)
  • fort --report to write an auditor-ready, self-contained HTML report
  • Exit codes: 0 = all pass, 1 = any fail, 2 = any warn
  • Framework mappings on every check: SOC 2 CC controls, ISO 27001 A-controls, NIST CSF subcategories, CIS v8 safeguards
  • No agent, no signup, no MDM — single static binary, zero runtime dependencies

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Fort

Get notified when new releases ship.

Sign up free

Beta — feedback welcome: [email protected]