Don't ship with a hole in the hull.
Keelix scans your Docker host and finds the security holes before an attacker does. 93 checks across the host, your containers, and what is exposed to the internet. It runs on your box and tells you what to fix.
Host, containers, exposure.
It checks the operating system, the containers, and what is actually reachable from the internet.
Maps to frameworks, too.
Every check also names the SOC 2, ISO 27001, or CIS control it covers. Handy when a compliance review comes around.
Covers AI agents and MCP.
19 checks for the AI agents and MCP servers on your box, the questions now landing on security reviews.
It keeps watching.
Sentinel re-runs the checks on a schedule and tells you the day something drifts. Bring your own AI key (Anthropic, OpenAI, Gemini, or a local model) and it explains what changed. The AI only reads results. It cannot touch your box. Free in the CLI, no cloud account needed.
A report of what to fix.
Markdown, HTML, or PDF. Every finding comes with what it means and how to fix it. Keelix Cloud keeps the history and a link you can share.
93 CHECKS EXECUTED · SAME INPUT, SAME VERDICT
FORMATS: MARKDOWN · HTML · PDF
Free to run. Cloud keeps the history.
The CLI does everything: all 93 checks, the report, and Sentinel. It is free and open source. Keelix Cloud stores your scans, tracks changes over time, and sends alerts. $19 a month, or $190 a year.
RUNS ON YOUR BOX · NO ACCOUNT · NO TELEMETRY