v0.2.0 - Open Source ASPM Orchestrator
Welcome to the 1Security documentation! Everything you need to install, use, and master 1Security is here.
New to 1Security? Start with these guides:
| Guide | Description | Time |
|---|---|---|
| GETTING_STARTED.md | Complete installation and setup guide | 10 min |
| USER_GUIDE.md | All commands, configurations, and workflows | 20 min |
| FEATURES.md | Explore all capabilities and features | 15 min |
| Document | What's Inside | Best For |
|---|---|---|
| GETTING_STARTED.md | Installation, first scan, troubleshooting | New users, onboarding |
| USER_GUIDE.md | Commands, configs, workflows, best practices | Daily usage reference |
| FEATURES.md | All features explained in detail | Understanding capabilities |
| TOOLS.md | Deep dive into each security tool | Tool-specific questions |
| DEVELOPMENT.md | Architecture, contributing, adding tools | Contributors, developers |
| CHANGELOG.md | Version history and changes | Tracking updates |
| Document | What's Inside | Best For |
|---|---|---|
| CODE_REVIEW.md | Complete code review (20 issues identified) | Understanding code quality |
| OPTIMIZATIONS.md | First round of optimizations (8 fixes) | Tracking improvements |
| FIXES_SUMMARY.md | All issues fixed summary (15/20 resolved) | Complete fix report |
| CLEANUP_ANALYSIS.md | Project cleanup and .gitignore analysis | Repository maintenance |
Install and set up 1Security → GETTING_STARTED.md
Learn all commands → USER_GUIDE.md → Quick Command Reference
Understand what 1Security can do → FEATURES.md
Configure a specific security tool → TOOLS.md → Find your tool
Add a new security scanner → DEVELOPMENT.md → Adding a New Security Tool
See what's new → CHANGELOG.md
Use interactive filtering in reports → FEATURES.md → Interactive Report Filtering
Set up automatic tool installation → GETTING_STARTED.md → Automatic Tool Management
Integrate with CI/CD → USER_GUIDE.md → CI/CD Integration Examples
Understand SARIF reports → FEATURES.md → SARIF Reports
docs/
├── README.md (you are here) # Documentation index
├── GETTING_STARTED.md # Installation & first scan (10 min read)
├── USER_GUIDE.md # Complete command reference (20 min read)
├── FEATURES.md # All features explained (15 min read)
├── TOOLS.md # Tool-specific guides (30 min read)
├── DEVELOPMENT.md # For contributors (20 min read)
└── CHANGELOG.md # Version history
Total: 6 focused documents (~95 min to read everything)
1. GETTING_STARTED.md (10 min)
├─ Prerequisites
├─ Quick Install
├─ First Scan
└─ Understanding Reports
2. USER_GUIDE.md (15 min)
├─ Quick Command Reference
├─ Configuration Basics
└─ Common Workflows
3. FEATURES.md (5 min)
└─ Overview section
1. USER_GUIDE.md (complete)
├─ All commands and options
├─ Advanced configurations
├─ Tool-specific arguments
└─ CI/CD integrations
2. FEATURES.md (complete)
├─ All security categories
├─ Report formats
├─ Advanced features
└─ Feature details
3. TOOLS.md (selections)
└─ Deep dive into tools you use
1. DEVELOPMENT.md (complete)
├─ Project structure
├─ Architecture overview
├─ Adding new tools
└─ Testing & debugging
2. CHANGELOG.md
└─ Understand evolution
3. Codebase exploration
└─ Review actual code
- Scannable Headers: Use headers to jump to relevant sections
- Code Examples: All examples are copy-paste ready
- Internal Links: Click links to related sections
- Tables: Quick reference for comparisons
First Time User:
# Follow this sequence:
1. Read GETTING_STARTED.md
2. Do the Quick Install
3. Run your first scan
4. Browse USER_GUIDE.md as neededReturning User:
# Quick lookup:
- Need a command? → USER_GUIDE.md
- Forgot a config? → USER_GUIDE.md → Configuration Guide
- Tool question? → TOOLS.md
- Feature details? → FEATURES.mdDeveloper:
# Development workflow:
1. Read DEVELOPMENT.md completely
2. Explore actual codebase
3. Refer back to DEVELOPMENT.md for patternsComplete setup guide covering:
- Prerequisites and installation
- Automatic tool management
- Running your first scan
- Understanding reports
- Configuration basics
- Troubleshooting
- Verification checklist
Who needs this: Everyone (start here!)
Comprehensive reference covering:
- All CLI commands
- Configuration templates
- Tool-specific arguments
- Output formats
- Common workflows
- Severity levels
- HTML report features
- Advanced configurations
- CI/CD integrations
- Troubleshooting guide
- Best practices
Who needs this: Daily users, DevOps, Security teams
Feature deep-dives covering:
- 4 security categories (IaC, SCA, SAST, Secrets)
- 3 report formats (JSON, HTML, SARIF)
- Automatic tool management
- Interactive report filtering
- Unified output schema
- CI/CD integration
- Advanced features
- Feature roadmap
Who needs this: Everyone wanting to understand capabilities
Tool-specific guides covering:
- Checkov: IaC scanning, frameworks, arguments
- Trivy: SCA scanning, languages, performance
- Semgrep: SAST scanning, rulesets, customization
- Gitleaks: Secrets detection, patterns, configuration
- Tool comparison
- When to use each tool
- Tool-specific tips
Who needs this: Users wanting deep tool knowledge
Developer documentation covering:
- Project structure
- Architecture overview
- Design principles
- Data flow
- Adding new security tools (step-by-step)
- Testing procedures
- Code style guide
- Debugging tips
- Release process
- Contributing guidelines
Who needs this: Contributors, developers, maintainers
Version history covering:
- Release notes for all versions
- New features per release
- Breaking changes
- Bug fixes
- Roadmap for future versions
Who needs this: Everyone tracking updates
| Metric | Value |
|---|---|
| Total Documents | 6 core files + README |
| Total Lines | ~3,000 lines |
| Estimated Reading Time | 95 minutes (complete) |
| Code Examples | 100+ |
| Quick Start Time | 10 minutes |
| Reduction from Previous | 22 files → 6 files (73% reduction) |
✅ Clear Structure - Logical organization, easy to navigate
✅ Scannable - Headers, tables, lists for quick lookup
✅ Complete - Everything documented, no gaps
✅ Examples - Real code, real commands, copy-paste ready
✅ Cross-Referenced - Links between related sections
✅ Progressive - Start simple, get detailed as needed
✅ Maintained - Updated with each release
| Question | Answer |
|---|---|
| How do I install? | GETTING_STARTED.md |
| What are the commands? | USER_GUIDE.md → Quick Command Reference |
| How do I configure X? | USER_GUIDE.md → Configuration Guide |
| What does Tool Y do? | TOOLS.md → Find your tool |
| How does Feature Z work? | FEATURES.md → Search for feature |
| Something's not working | GETTING_STARTED.md → Troubleshooting |
- Search this documentation - Use Ctrl/Cmd+F
- Check examples - See
examples/directory in project - Review changelog - CHANGELOG.md for recent changes
- Open an issue - GitHub Issues for bug reports
- Start a discussion - GitHub Discussions for questions
- Main README: ../README.md
- GitHub Repository: https://github.com/jaganraj/1security
- License: ../LICENSE
- Example Configs:
../examples/
Our documentation follows these principles:
- Start Simple - Quick start first, details later
- Be Complete - Cover everything, leave no gaps
- Show Examples - Code speaks louder than words
- Stay Current - Update with every release
- Be Scannable - Headers, tables, lists
- Cross-Reference - Link related content
- Be Practical - Focus on real usage
Before: 22 scattered files, significant overlap, hard to navigate
After: 6 focused files, clear structure, easy to find information
QUICKSTART.md + INSTALLATION.md + TOOL_MANAGEMENT.md
→ GETTING_STARTED.md
QUICK_REFERENCE.md + usage examples
→ USER_GUIDE.md
FEATURE_*.md files + REPORT_FILTERING.md + Phase docs
→ FEATURES.md
TRIVY_INTEGRATION.md + other tool docs
→ TOOLS.md
CODE_REVIEW.md + implementation docs
→ DEVELOPMENT.md
CHANGES.md
→ CHANGELOG.md
✅ 73% Fewer Files - Easier to manage
✅ Zero Redundancy - Each topic covered once
✅ Better Organization - Logical grouping
✅ Faster Navigation - Find what you need quickly
✅ Easier Maintenance - Update one place, not many
✅ Professional - Industry-standard structure
Found an issue with the documentation? Please:
- Open an issue on GitHub
- Suggest improvements in Discussions
- Submit a PR to fix it yourself
We appreciate your feedback!
Version: 1Security v0.2.0
Documentation Status: Complete & Optimized ✅
Last Updated: November 21, 2025
Clean, comprehensive, and easy to navigate - documentation done right. 🚀
1Security | MIT License | R Jagan Raj