Quick Start · Introduction
DocsQuick StartIntroduction

Introduction

Quick Start

GuardVault is an open-core Privileged Access Management (PAM+) platform. One control plane unifies asset discovery, credential vaulting, session brokering, command-level authorization and immutable auditing across servers, databases, network devices, Kubernetes and cloud consoles.

Who GuardVault is for#

  • Platform and SRE teams standardizing SSH, RDP and kubectl access across fleets.
  • Security teams enforcing zero standing privilege, 4-eyes review and just-in-time credentials.
  • Compliance owners producing evidence for SOC 2, ISO 27001, PCI-DSS and HIPAA audits.

What you get out of the box#

CapabilityIncludedNotes
SSH / RDP / VNC / K8s / DB proxyYesFrame-perfect recording
Credential vault + rotationYesStatic + dynamic secrets
Approval workflowsYesSingle / dual / quorum
SIEM streamingYesSplunk · Datadog · Elastic · Loki
Terraform + PulumiYesFully declarative
Air-gapped installEnterpriseSigned tarball + cosign
GuardVault ships as a self-hosted control plane. Your team owns the crypto material, the audit log and the session recordings — GuardVault Inc. never sees them.
Contribute

Docs live on GitHub. Edit this page and open a PR.

Community

Ask questions in the forum or the Slack workspace.

Start free

Spin up an evaluation stack in under 10 minutes.