For developers & security engineers

Security & compliance, without leaving your workflow

KollGuard scans your GitHub repos and databases, maps every gap to SOC 2 / HIPAA, and lets your AI agent fix findings right in your editor over MCP. First scan free, no GRC platform, no sales call.

  • Read-only scans of repos + Postgres, Supabase, MySQL, MongoDB, SQL Server & DynamoDB
  • Every finding mapped to 12 frameworks with remediation
  • Fix from Claude Code, Cursor, VS Code, Grok — via MCP
  • KGAI explanation + remediation steps per finding
  • Built-in Epics & Features tracker — AI drafts epics + features, each with an AI-generated workflow diagram
  • Read-only API keys for CI and scripts
  • Credentials Vault-encrypted — never in the browser
Frameworks covered:SOC 2HIPAAISO 27001PCI DSSGDPRNIST

Why developers pick KollGuard

  • It actually scans your systems — not a questionnaire or a screenshot collector.
  • The kollguard-mcp server lets your coding agent pull live findings and fix them in-repo, with every change tied to a control.
  • Read-only kgr_ API keys plug into any IDE, CLI, or CI pipeline.
  • Starts free in minutes with transparent pricing — no quote, no sales call.

Developer guides

Frequently asked

Does KollGuard need my source code?
No. It connects read-only via a least-privilege token, evaluates configuration and metadata, and never stores your source code.
How do I read findings from my IDE?
Create a read-only API key in Settings, add the kollguard-mcp server to your client config (Claude Code, Cursor, VS Code, Windsurf, Grok — any MCP client), and your agent can pull findings and propose fixes. See the API & MCP docs.
Is it really free to start?
Yes — the first scan of each target is free, and Starter starts at $29/mo ($19.69 billed annually). No credit card to begin.

Run your first scan free

Connect a repo or database. See your posture in minutes.