Documentation
A self-hostable information security management system built for the EU NIS 2 Directive, with GDPR, the EU AI Act, the CRA and ISO 27001 alongside it. Free software under AGPL-3.0, published as a container image, with no licence key and nothing phoning home.
Quickstart
One command. It installs, starts and loads the framework data for you.
Self-hosting
Put it on a server: profiles, TLS, storage, backups, updates.
Use the schemas
219 requirements and the incident notification format, on npm, without the platform.
Contribute
Run it locally, understand the layout, and ship a change.
What open-isms is, and how to get an instance running.
Running your own instance in production.
What the software models, and how compliance evidence is recorded.
The schemas published on their own, for use without the platform.
Working on open-isms itself.