Find answers to common questions about The HorizonSec Project
The HorizonSec Project is an open-source security framework designed to make application security transparent, actionable, and accessible to builders of all levels. We provide modular security tools that integrate directly into your development workflow, offering static code analysis, infrastructure scanning, endpoint security, and orchestration capabilities.
HorizonSec is built for everyone who builds software:
If you write code or manage infrastructure, HorizonSec is for you.
1. Truly Open Source: No bait-and-switch. Everything is MIT licensed with full source code available.
2. Modular Architecture: Use individual modules independently or combine them. Start small, scale up.
3. Builder-First Design: Designed for developers, not security specialists. Clear, actionable feedback instead of cryptic reports.
4. Multi-Cloud Native: Works across AWS, GCP, Azure, and on-premises without vendor lock-in.
5. Community-Driven: Built by the community, for the community, with transparent development.
π GAIA Framework: Security orchestration and management layer that ties everything together.
πΉ ARTEMIS: Static code analysis for vulnerabilities and security anti-patterns.
π± DEMETER: Infrastructure security scanning for cloud resources and IaC.
π HADES: Endpoint security and runtime monitoring for containers and applications.
ARTEMIS currently supports:
We're continuously adding support for more languages based on community demand.
Our detailed roadmap is available on our Roadmap page. We also maintain public project boards on GitHub where you can track development progress in real-time. All planning discussions happen in our GitHub Discussions forum.
There are several installation options:
# CLI Installation
npm install -g @horizonsec/artemis-cli
pip install horizonsec-demeter
# Docker
docker run horizonsec/artemis scan .
# Library/SDK
npm install @horizonsec/artemis
pip install horizonsec-sdk
See our Getting Started guide for detailed instructions.
Yes! We provide native integrations for:
For other platforms, you can use our CLI tools or Docker containers.
DEMETER currently supports:
Multi-cloud support is a high priority on our roadmap.
Performance varies by project size and complexity:
We use intelligent caching and incremental analysis to speed up subsequent scans.
Yes! Each module supports custom configuration:
Configuration is done through .horizonsec.yml files or CLI arguments.
HorizonSec supports standard output formats:
We also provide APIs and SDKs for deeper integrations.
Yes, completely free. HorizonSec is licensed under the MIT License, which means:
We believe security should be accessible to everyone.
Absolutely! The MIT License explicitly allows commercial use. You can:
The only requirement is to include the original copyright notice and license.
No. We're committed to keeping all HorizonSec functionality free and open source. Our philosophy is:
The project is supported by the community and maintained by volunteers and sponsors.
The HorizonSec Project is funded through:
All funding is transparent and used solely for project development and infrastructure.
Like most open source software, HorizonSec is provided "as is" without warranty. However:
For enterprise deployments, consider professional support or consulting services from community experts.
There are many ways to contribute, regardless of your technical background:
Visit our Community page to get started.
Absolutely! We welcome contributors of all experience levels. We provide:
Everyone started somewhere, and we're here to help you learn.
Our development process is designed to be transparent and inclusive:
We use a community-driven decision-making process:
Maintainership is earned through consistent, valuable contributions:
Current maintainers nominate new maintainers based on these criteria.
We offer several support channels:
Community support is free and provided by volunteers.
While the core project doesn't offer commercial support, several options exist:
We maintain a list of recommended service providers in our documentation.
To report a bug:
Security vulnerabilities should be reported privately to security@horizonsec.org
Development timeline:
See our Roadmap for detailed timelines and progress tracking.
Yes! We welcome feature requests through:
Community voting and feedback helps us prioritize development efforts.
Stay informed through:
Can't find what you're looking for? We're here to help!