Overview
An open-source GRC platform for controls, evidence, vendors, security exposure, and compliance automation across SOC 2, ISO 27001, and more.
Features and best fit
Based on official documentation; not hands-on tested · Content checked:
Key characteristics
An open-source GRC platform for controls, evidence, vendors, security exposure, and compliance automation across SOC 2, ISO 27001, and more.
Sources: [1]
Good fit for
A comparison candidate for Automation, Governance & Compliance, Automation, Compliance, Compliance as Code, Go use cases. Check the official README and installation instructions for exact fit and requirements.
Check before adopting
The registered primary language is Go and the license is Apache-2.0. Verify version-specific runtime requirements, breaking changes, and additional dependencies in the official README and latest release notes.
Sources: [1]
Official sources
- [1]theopenlane/core — GitHub(2026-09-15)
Supplemental curator note
The differentiator is not another framework checklist: Openlane connects people, systems, vendors, controls, and evidence in a system of record and keeps them current through workflows. Treat production self-hosting and trademark rights separately from the source-code license.
Try it in 3 steps
- 1
Get the source
Prepare Go, Homebrew, Task, and Docker, then enter the official repository.
git clone https://github.com/theopenlane/core.git && cd core - 2
Install tools and dependencies
Follow the README Run It Yourself path to set up the tools and dependencies required by the development stack.
task install:all - 3
Start the development stack
Start the local Openlane development stack. For production self-hosting, separately design secrets, database, object storage, Redis, backups, and related operations using the project documentation.
task run-dev
Growth
Growth trends · Last 30 days
306 Stars
Trend data is still being collected.
Development activity
Last 90 days · weekly
- Commits (last 30 days)
- 81
- Open PRs
- 18
Development activity is still being collected.
Built with
Categories and tags
Categories
GitHub data
GitHub dataView detailed GitHub data
GitHub Topics
- go
- golang
- graphql
- openlane
- hacktoberfest
- soc2
- iso27001
- nist800-53
- compliance-automation
- compliance-as-code
- security-audit
- grc
- Stars
- 306
- Forks
- 51
- Watchers
- 3
- Open issues
- 4
- Primary language
- Go
- License
- Apache-2.0
- Repository last updated
- Sep 16, 2026
Related information
Write a related articleShare a guide or use case for this OSS in Markdown. Articles are published after administrator approval.
Explore next
- OpenClaw389,838 Stars
A persistent personal AI assistant platform spanning channels, tools, memory, and schedules.
TypeScript - Hermes Agent246,050 Stars
A persistent AI agent with memory, skills, cron jobs, subagents, and multiple terminal backends.
Python - n8n204,525 Stars
A fair-code platform combining a visual canvas and code for service integrations, workflows, and AI agents.
TypeScript - Dify155,932 Stars
A visual LLM application platform combining AI workflows, RAG, agents, model management, and observability.
TypeScript - Browser Use114,790 Stars
A Python browser-automation layer for LLM agents that can use local or cloud browsers and optional hosted agent infrastructure.
Python
Report incorrect information
Tell us if any listing information is incorrect or outdated.