Now with extended thinking for deeper analysis

Compliance guardrails
for every pull request

Astriguard connects to your GitHub, scans every PR against SOC 2, HIPAA, GDPR, and EU AI Act, and posts findings as inline review comments. Automatically.

SOC 2HIPAAGDPREU AI Act
astriguard · scan #147
RUNNING
PR #147 opened0%

infra/database.tf · 3 files changed

POSTED AS GITHUB REVIEW COMMENT
astriguard[bot]
Simple setup

Up and running in minutes

01
Install the GitHub App

Connect Astriguard to your GitHub organisation in one click. Choose which repositories to monitor.

02
Every PR is scanned automatically

When a pull request opens or is updated, Astriguard triggers a durable compliance workflow.

03
Review findings inline

Violations appear as GitHub review comments with control references, severity, and suggested fixes.

Capabilities

Everything your compliance team needs

📋
Multi-framework analysis
SOC 2, HIPAA, GDPR, and EU AI Act in one scan. Each PR is checked against all frameworks relevant to your stack.
SOC2 · HIPAA · GDPR · EU AI Act
AI triage + deep analysis
A fast triage pass filters noise. A deep analysis pass uses extended reasoning to find real compliance gaps.
Claude Haiku · Claude Sonnet
📚
Continuous audit ledger
Every merged PR generates a timestamped ledger entry. Export to CSV for auditors, board reviews, or certifications.
Always-on · Exportable

Violations caught before they merge

Astriguard posts findings as GitHub review comments with control references and suggested fixes.

pull_request #42 | infra/database.tf
1 CRITICAL violation
⛔ Critical
Database publicly accessible
CC6.1 · Logical and Physical Access Controls
publicly_accessible = true exposes the database to the internet.
SOC 2HIPAA
Try it free
HARD BLOCK
infra/database.tfHARD BLOCK
14 publicly_accessible = true
14 publicly_accessible = false
Pricing

Simple, transparent pricing

All paid plans include a 7-day free trial.

Free
$0/ forever

For solo developers and open-source projects getting started with compliance.

  • 1 repository
  • 1 compliance framework
  • Unlimited scans
  • Standard AI analysis engine
  • PR comments with findings
  • Community support
Start free
Growth
$199/mo
billed annually

For growing engineering teams that need broader coverage and audit exports.

  • 3 repositories
  • 1 compliance framework
  • Unlimited scans
  • Enhanced AI analysis engine
  • Audit ledger & CSV export
  • Email & Slack notifications
  • 7-day free trial
Start 7-day trial
Most popular
Scale
$699/mo
billed annually

For teams managing multi-framework compliance across multiple repositories.

  • 10 repositories
  • SOC 2 + HIPAA + GDPR (3 frameworks)
  • Unlimited scans
  • Advanced reasoning AI model for higher accuracy
  • Autonomous one-click remediation
  • Continuous assurance ledger
  • Priority Slack support (4h SLA)
  • 7-day free trial
Start 7-day trial
Enterprise
Customstarting at $2,200/mo

For large-scale engineering organisations or regulated financial and tech companies.

  • Unlimited repositories
  • All frameworks
  • Unlimited scans
  • Highest-intelligence AI model with extended reasoning
  • SSO / SAML via WorkOS
  • Dedicated database isolation
  • Custom data retention
  • Dedicated solutions engineer
Contact sales

Annual plans billed as a single yearly payment. Switch to monthly for flexible billing.

Live demo

See it in action before you commit

Book a 30-minute live walkthrough with our team. We will show you automated PR compliance gating, framework configuration, and answer every question you have. No commitment, no pressure.

Book a live demo
30-minute focused walkthrough
See real PR scanning and inline comments
SOC 2, HIPAA, GDPR, EU AI Act configuration
Q&A with the founding team
Astriguard

Ready to ship with confidence?

Connect your GitHub organisation today. The free plan is unlimited time, no card required. Have questions? Our team typically responds within a few hours.

Astriguard | Compliance Guardrails for Every Pull Request