Skip to content

Add sf-audit to SaaS - #49

Open
cclabsnz wants to merge 1 commit into
4ndersonLin:masterfrom
cclabsnz:add-sf-audit
Open

Add sf-audit to SaaS#49
cclabsnz wants to merge 1 commit into
4ndersonLin:masterfrom
cclabsnz:add-sf-audit

Conversation

@cclabsnz

Copy link
Copy Markdown

Adds sf-audit to the SaaS section.

It's an open source (Apache-2.0) security posture audit for Salesforce orgs, distributed as a Salesforce CLI plugin. It runs 88 read-only checks across identity, access, data, code, integrations, monitoring and Agentforce/GenAI, correlates individual findings into named attack chains, scores the org A-F, and maps every finding to OWASP, SOC 2, ISO 27001 and other frameworks.

Every code path is read-only (SOQL/Tooling/REST GETs and Metadata API reads), enforced by a build-failing test. Published on npm as @cclabsnz/sf-audit with signed provenance.

One entry, inserted alphabetically. No other changes.

🤖 Generated with Claude Code

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants