Now with extended thinking for deeper analysis

Compliance guardrails
for every pull request

Astriguard connects to your GitHub, scans every PR against SOC 2, HIPAA, GDPR, and EU AI Act, and posts findings as inline review comments. Automatically.

SOC 2HIPAAGDPREU AI Act
astriguard · scan #147
RUNNING
PR #147 opened0%

infra/database.tf · 3 files changed

POSTED AS GITHUB REVIEW COMMENT
astriguard[bot]
Simple setup

Up and running in minutes

01
Install the GitHub App

Connect Astriguard to your GitHub organisation in one click. Choose which repositories to monitor.

02
Every PR is scanned automatically

When a pull request opens or is updated, Astriguard triggers a durable compliance workflow.

03
Review findings inline

Violations appear as GitHub review comments with control references, severity, and suggested fixes.

Capabilities

Everything your compliance team needs

📋
Multi-framework analysis
SOC 2, HIPAA, GDPR, and EU AI Act in one scan. Each PR is checked against all frameworks relevant to your stack.
SOC2 · HIPAA · GDPR · EU AI Act
AI triage + deep analysis
A fast triage pass filters noise. A deep analysis pass uses extended reasoning to find real compliance gaps.
Claude Haiku · Claude Sonnet
📚
Continuous audit ledger
Every merged PR generates a timestamped ledger entry. Export to CSV for auditors, board reviews, or certifications.
Always-on · Exportable

Violations caught before they merge

Astriguard posts findings as GitHub review comments with control references and suggested fixes.

pull_request #42 | infra/database.tf
1 CRITICAL violation
⛔ Critical
Database publicly accessible
CC6.1 · Logical and Physical Access Controls
publicly_accessible = true exposes the database to the internet.
SOC 2HIPAA
Try it free
HARD BLOCK
infra/database.tfHARD BLOCK
14 publicly_accessible = true
14 publicly_accessible = false
Pricing

Simple, transparent pricing

All paid plans include a 7-day free trial. No credit card required to start.

Free
$0/ forever

For solo developers and open-source projects getting started with compliance.

  • 1 repository
  • 1 compliance framework
  • 50 scans per month
  • PR comments with findings
  • Community support
Start free
Growth
$199/mo
billed annually

For growing engineering teams that need broader coverage and audit exports.

  • 3 repositories
  • 1 compliance framework
  • 500 scans per month
  • Audit ledger & CSV export
  • Email & Slack notifications
  • 7-day free trial
Start 7-day trial
Most popular
Scale
$699/mo
billed annually

For teams managing multi-framework compliance across multiple repositories.

  • 10 repositories
  • SOC 2 + HIPAA + GDPR (3 frameworks)
  • 2,000 scans per month
  • Autonomous one-click remediation
  • Continuous assurance ledger
  • Priority Slack support (4h SLA)
  • 7-day free trial
Start 7-day trial
Enterprise
Customstarting at $2,200/mo

For large-scale engineering organisations or regulated financial and tech companies.

  • Unlimited repositories
  • All 4 frameworks inc. EU AI Act
  • Unlimited scans
  • SSO / SAML via WorkOS
  • Dedicated database isolation
  • Custom data retention
  • Dedicated solutions engineer
Contact sales

Annual plans billed as a single yearly payment. Switch to monthly for flexible billing.

Astriguard

Ready to ship with confidence?

Connect your GitHub organisation today. The free plan is unlimited time, no card required. Have questions? Our team typically responds within a few hours.

Astriguard | Compliance Guardrails for Every Pull Request