Skip to content
@theopenlane

Openlane

Openlane is the open-source compliance automation alternative to Vanta, Drata, and Secureframe. We believe the software companies use to demonstrate trust should itself be auditable. That's why the heart of our cloud service is developed here in the open.

That principle shapes how we build: security features like SSO and 2FA enforcement ship with every module rather than sitting behind an enterprise tier. The stack runs on other open libraries and technologies such as ent, PostgreSQL, Redis, and OpenFGA instead of requiring you to have a pile of SaaS dependencies but still claiming to be "open-source" like CompAI.

See the difference yourself - sign up for free for the first 30 days, no credit card required, no "request a demo" button, and transparent pricing so you only pay for what your team uses.

Docs · Discord · LinkedIn · Quickstart

Openlane on OpenAlternative

Pinned Loading

  1. core core Public

    Open source compliance automation for SOC 2, GDPR, ISO27001, NIST 800-53, and more

    Go 324 53

  2. awesome-compliance awesome-compliance Public

    A curated list of awesome compliance resources, libraries, and tooling

    96 69

  3. iam iam Public

    identity and access management tooling and wrappers + helpers

    Go 19 4

  4. entx entx Public

    helper package for working with the ent framework

    Go 16

  5. go-client go-client Public

    Openlane go-client, useful for automating your SOC 2 evidence collection, updating ISO27001 controls, or really anything you want to do in the Openlane system

    Go 5

  6. policy-hub policy-hub Public

    Example Policies and Procedures for use in Openlane or any compliance program; helpful for SOC2, ISO27001l and more

    8

Repositories

Showing 10 of 43 repositories
  • openlane-ui Public

    the openlane ui - holds the openlane console and storybook

    theopenlane/openlane-ui's past year of commit activity
    TypeScript 28 Apache-2.0 19 4 32 Updated Oct 11, 2026
  • riverboat Public

    the openlane job queue server based on riverqueue

    theopenlane/riverboat's past year of commit activity
    Go 9 Apache-2.0 4 1 8 Updated Oct 11, 2026
  • go-client Public

    Openlane go-client, useful for automating your SOC 2 evidence collection, updating ISO27001 controls, or really anything you want to do in the Openlane system

    theopenlane/go-client's past year of commit activity
    Go 5 Apache-2.0 0 1 3 Updated Oct 10, 2026
  • core Public

    Open source compliance automation for SOC 2, GDPR, ISO27001, NIST 800-53, and more

    theopenlane/core's past year of commit activity
    Go 324 Apache-2.0 53 5 (1 issue needs help) 19 Updated Oct 10, 2026
  • openlane-docs Public

    Documentation for the Openlane product suite

    theopenlane/openlane-docs's past year of commit activity
    MDX 5 3 1 5 Updated Oct 10, 2026
  • courier Public

    Declarative sync utility to export Openlane information into consistent manifests and upload / apply changes

    theopenlane/courier's past year of commit activity
    Go 1 Apache-2.0 0 1 2 Updated Oct 10, 2026
  • logx Public

    Opinionated zerolog wrapper with heavy use of context and interface related capabilities, and pretty console log output

    theopenlane/logx's past year of commit activity
    Go 1 Apache-2.0 0 1 3 Updated Oct 10, 2026
  • homebrew-tap Public

    homebrew tap for hosting + installing the openlane CLI

    theopenlane/homebrew-tap's past year of commit activity
    Ruby 3 Apache-2.0 0 0 0 Updated Oct 10, 2026
  • entx Public

    helper package for working with the ent framework

    theopenlane/entx's past year of commit activity
    Go 16 Apache-2.0 0 1 4 Updated Oct 10, 2026
  • utils Public

    common packages used throughout openlane

    theopenlane/utils's past year of commit activity
    Go 4 Apache-2.0 2 1 5 Updated Oct 10, 2026