script-bundle+runbook

Sudoers Audit Kit

A read-only Bash toolkit that maps every sudo privilege on a Linux host — who can run what, which NOPASSWD rules exist, which aliases resolve to root, and which include-files shadow the main sudoers. One Markdown report, zero writes. Finds the "we'll clean that up later" grants buried in /etc/sudoers.d/.

A read-only Bash toolkit that maps every sudo privilege on a Linux host — who can run what, which NOPASSWD rules exist, which aliases resolve to root, and which include-files shadow the main sudoers. One Markdown report, zero writes. Finds the "we'll clean that up later" grants buried in /etc/sudoers.d/.

What's Inside

  • 📦sudoers-audit.sh — The read-only Bash script. Run it, redirect to a file, hand the report to your auditor.
  • 📦sudoers-audit-runbook.md — Explains every report section, what each finding means, and concrete remediation steps.
  • 📦sample-output.md — A realistic annotated sample report so you know exactly what to expect before you run anything.
  • 📦README.md — Prerequisites, 3-step quick start, and optional PDF render instructions.
$19

One-time purchase

Instant download after purchase
📧Download link sent to your email
🔄7-day download access
14-day money-back guarantee
View refund policy
Quality Score

9/10