StackGuardian helps enterprises deliver and operate cloud infrastructure through orchestration, policy-driven automation, standardization and self-service.
Tirith is our open-source policy engine. It reads the plan your pipeline already produces (terraform show -json), checks it against your policies, and exits non-zero so a violating change never reaches apply. It's Apache-2.0, needs no account, and runs in the CI you already use.
- Tirith: CLI and policy engine
- tirith-iac-governance-action: Tirith as a GitHub Actions step
- Docs
| Repository | Use it to |
|---|---|
| terraform-provider-stackguardian | Manage StackGuardian resources with Terraform |
| sg-cli | Work with StackGuardian from the command line |
| sg-sdk-go | Call StackGuardian APIs from Go |
| sg-runner | Run workflows on your own infrastructure with a private runner |
| add-sg-mcp | Install the StackGuardian MCP server and skills for AI agents |