Rule1 guide

How to use the standalone security-controls catalogue.

Explore

Browse retained frameworks

Use the Explorer to switch between the Australian ISM, New Zealand ISM, Cyber Essentials, NIST Cybersecurity Framework, and NIST SP 800-53. Search and filters apply to the current framework. Selecting a control exposes its retained version history and same-section relationships.

Compare

Review catalogue changes

The comparison view shows controls added, modified, or withdrawn between two retained versions. CSV export contains only the rows visible after filtering.

Local data

No operated Rule1 backend

Rule1 downloads a checked SQLite snapshot and queries it inside your browser. It does not provide a runtime API, account system, community service, or bypass tokens. GitHub Actions rebuilds the snapshot from framework source files retained in this repository.

Interpretation

Verify authoritative sources

Rule1 is a navigation and change-review aid, not compliance advice. Source provenance is retained with the database, but decisions should be checked against the relevant publisher’s authoritative framework. Named Essential Eight strategies and glossary entries are absent where the archived source does not provide them.

Licensing

Code and source material

Rule1 code and project-authored documentation are licensed under the GNU Affero General Public License v3.0 or later. Framework source documents and data retained under data/ remain subject to their publishers’ or source repositories’ terms and are not relicensed by Rule1.