Rule1 guide
How to use the standalone security-controls catalogue.
Browse retained frameworks
Use the Explorer to switch between the Australian ISM, New Zealand ISM, Cyber Essentials, NIST Cybersecurity Framework, and NIST SP 800-53. Search and filters apply to the current framework. Selecting a control exposes its retained version history and same-section relationships.
Review catalogue changes
The comparison view shows controls added, modified, or withdrawn between two retained versions. CSV export contains only the rows visible after filtering.
No operated Rule1 backend
Rule1 downloads a checked SQLite snapshot and queries it inside your browser. It does not provide a runtime API, account system, community service, or bypass tokens. GitHub Actions rebuilds the snapshot from framework source files retained in this repository.
Verify authoritative sources
Rule1 is a navigation and change-review aid, not compliance advice. Source provenance is retained with the database, but decisions should be checked against the relevant publisher’s authoritative framework. Named Essential Eight strategies and glossary entries are absent where the archived source does not provide them.
Code and source material
Rule1 code and project-authored documentation are licensed under the GNU Affero General Public License v3.0 or later. Framework source documents and data retained under data/ remain subject to their publishers’ or source repositories’ terms and are not relicensed by Rule1.