Open Framework v1.1 GA

Cloud architectuur dat is soevereine, veilig, en gebouwd om te overleven.

WAF++ is de open, leverancier-neutrale standaard voor het ontwerpen, scoren en bewijzen van de kwaliteit van de cloudarchitectuur in elke provider. Geen lock-in, geen zwarte-box audits, geen marketing agenda.

Apache 2.0 · CC BY 4.0 83+ Controles Multi-cloud
cloud.waf2p/uitvoerend
WAF++ Executive Dashboard — compliance overview for leadership WAF++ Executive Dashboard — compliance overview for leadership
AVG · NIS2 gereed
83+ controles
Verslagen klaar voor controle
Agentklaar
Geen cloudgegevens nodig Statische analyse op IaC PDF's klaar voor de accountant
8
Pijlers
83+
Controles
50+
Nalevingskaders
0%
Verkoper lock-in
1M+
IaC-middelen te beoordelen
100%
Open bron & transparant
REFERENCES

Trusted by cloud practitioners.

WAF++ provides a stable foundation for digital applications and shows how technical precision and design sensitivity can be successfully combined.
Lydia Hundsdörfer
Lydia Hundsdörfer
Project & Partner Manager, Vogel IT
WAF++ has great potential to become the perfect answer to real-world everyday questions from the technology, cloud & developer community.
Maximilian Hille
Maximilian Hille
Cloud Analyst
For the first time we can show our board a single, vendor-neutral score for cloud workload quality instead of slide decks full of gut feeling.
Dr. Elena Voss
Dr. Elena Voss
CISO, Finova Group
WAFPass caught misconfigurations in Terraform before they reached production. That alone saved us a full audit cycle.
Marcus Chen
Marcus Chen
VP of Engineering, ScaleFlow
The sovereign pillar gives us a clear language for residency and control discussions with regulators and customers.
Sarah Bennett
Sarah Bennett
Cloud Architect, Nordisys AG
Ingepast in toonaangevende nalevingskaders
AVG SOC 2 HIPAA BSI C5 ISO 27001 NIS2 PCI DSS DORA ISO 27017 NIST 800-53
Waarom ++

Twee extra pijlers voor een wereld waar klassieke kaders niet voor gebouwd zijn.

WAF++ neemt de zes bewezen goed Architected pijlers en voegt de twee die het belangrijkst zijn voor moderne, gereguleerde, AI-geassisteerde cloud operaties.

+01

Soeverein

Digitale soevereiniteit, data residency, en verkoper onafhankelijkheid. De eerste plus houdt uw architectuur onder uw controle.

+02

Agentisch

Beleidsbewuste autonome agenten en AI-ondersteunde architectuur beoordelingen. De tweede plus maakt het framework klaar voor het agentische tijdperk.

WAFPass

Compliance controles die lopen voor de cloud.

De open-source WAFPass platform scant Terraform, AWS CDK, en meer

cloud.waf2p/runs
WAFPass Run Dashboard WAFPass Run Dashboard
Statische analyseop .tf-bestanden
8 pijlersgedekt
PDF-rapportenvoor accountants
CI/CD klaarinheemse haken
Snel starten
git clone https://github.com/WAF2p/wafpass-core.git

Voor de volledige Docker Compose stack (CLI + Server + Dashboard) zie devolledige installatiehandleiding.

Hoe het werkt

Van code naar naleving in drie stappen.

01
Terraform schrijven

Bouw infrastructuur-as-code zoals je dat al doet. WAF++ blijft buiten je workflow.

02
WAFPass uitvoeren

Statische analyse controleert elke resource met WAF++-besturingen Geen cloudgegevens nodig.

03
Vaartuig dat voldoet aan de voorschriften

Export PDF rapporten, blokkeren schendingen in CI, en bewijzen governance aan auditors.

Beginnen

Klaar om te bouwencloudarchitectuurMet opzet?

Word lid van de gemeenschap, lees de docs, of voer je eerste WAFPass scan uit vandaag.

AVG SOC 2 HIPAA BSI C5 ISO 27001 NIS2