{"repo":"Snowflake-Labs/sansshell","free":true,"listed":false,"github":"https://github.com/Snowflake-Labs/sansshell","clone":"git clone https://github.com/Snowflake-Labs/sansshell.git","description":"A non-interactive daemon for host management","language":"Go","stars":122,"topics":["go","automation","security","administration","unshelled","reliability"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"SansShell A secure, non-interactive daemon for remote host management and debugging SansShell is a powerful remote host management system built on gRPC that provides a secure alternative to traditional SSH-based administration. It offers fine-grained access control, comprehensive auditing, and policy-based authorization for critical system operations. Overview SansShell is a modern host management platform that replaces traditional interactive shell access with a secure, auditable, and policy-driven approach. Built entirely on gRPC, it provides: - Security First : mTLS encryption, certificate-based authentication, and OPA policy enforcement - Fine-grained Authorization : Every operation can be evaluated against custom policies - Comprehensive Auditing : All actions are logged and traceable - Deterministic Operations : Reproducible results for a given system state - Zero Trust Architecture : No persistent shell access or elevated privileges required Core Components SansShell Server ( sansshell-server ) : A non-interactive daemon that runs on managed hosts, exposing secure gRPC services for system operations. SansShell Client ( sanssh ) : A CLI tool that provides both user-friendly commands and direct access to all gRPC endpoints. Proxy Server ( proxy-server ) (Optional) : A centralized gateway that enables: - Request fan-out to multiple hosts - Centralized policy enforcement - Network connectivity bridging - Enhanced logging and monitoring Getting Started Prerequisites - Go 1.","default_branch":null,"files":null,"tree":[],"storefront":"/r/Snowflake-Labs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Snowflake-Labs/sansshell/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}