Platform and policy checks
Detect the platform, validate policy inputs, and select the controls relevant to an audit.
Inspect first. Change with control.
An infrastructure security auditor and remediator combining policy validation, selectable controls, structured reports, and bounded remediation with preview and recovery mechanisms.
Why it exists
ARGA | Secure follows a deliberate security workflow: detect the platform, validate policy, inspect selected controls, and apply bounded changes with recovery support. It covers Linux infrastructure and related systems, helping operators make security work reviewable and controlled. The team can discuss the platform and control coverage relevant to your deployment.
What it covers
Detect the platform, validate policy inputs, and select the controls relevant to an audit.
Produce JSON and Markdown evidence reports that can be reviewed by both operators and tooling.
Documented control areas cover accounts, services, filesystems, networks, and integrity.
The implementation describes bounded Docker, Nginx, and Caddy remediation rather than unrestricted configuration changes.
Transaction and recovery APIs are intended to support preview, controlled application, and recovery from changes.
The scope includes OPNsense administration, update, and backup evidence checks. Ask about coverage for your appliance version.
Who it's for
Teams auditing and hardening self-managed Linux infrastructure.
Operators reviewing host, container, and web-edge controls.
People needing structured audit evidence and controlled remediation.
Current project stage
ARGA | Secure is in Beta and progressing toward a release candidate. Discuss the platforms, security controls, and recovery workflows you need. Commercial use requires a licensing conversation with the team.
Ask about availability →