Open source

Keel builds in the open

We think GRC should be portable, inspectable, and easy to build on. So we open-source the tools and data that make that real: a data-portability tool so your compliance data is never locked in, an MCP server so AI agents can work with your program, and an open crosswalk dataset anyone can use and cite.

keel-migrate

MIT

An open-source GRC data-portability tool. Export your compliance data to an open format so it is yours to keep and move, no lock-in.

keelgrc-mcp

MIT · on npm

A Model Context Protocol server for Keel, published on npm. Point Claude, Cursor, or any MCP client at your workspace and drive your compliance program in natural language. Run it with npx keelgrc-mcp.

compliance-crosswalks

CC-BY-4.0

Open data: 57 canonical controls mapped to the clauses they satisfy across 15 frameworks (ISO 27001, SOC 2, NIST CSF, PCI DSS, HIPAA, ISO 9001, GDPR, NIST SP 800-53, ISO 42001, NIST AI RMF, EU AI Act, and more), 347 mappings in all. Free to use and cite.

The crosswalk dataset is licensed CC-BY-4.0: free to use and adapt with attribution to Keel GRC LLC. Framework names are the property of their respective owners; the mappings are Keel's own interpretation, provided as a starting point rather than legal or audit advice.

Run your whole program in Keel

The open-source pieces plug into the full platform: one control-and-evidence graph across SOC 2, ISO 27001, HIPAA, PCI DSS, and more. Start free.

Start free Migrate to Keel