Skip to content

Repository files navigation

FedRAMP Consolidated Rules

This repository contains the machine-readable FedRAMP Consolidated Rules for 2026. Use it to read, analyze, and integrate structured definitions, process rules, and security indicators.

Repository Contents

The JSON defines the rule content; the schema defines its machine-readable shape. Other files in this repository provide supporting documentation and maintenance infrastructure.

Using The Information

Start with the dataset and schema for structured analysis. Definitions explain terms used in the rules. Process rules describe requirements and recommendations; security indicators describe capabilities and evidence expectations. Account for framework applicability, service class, document status, and effective dates when interpreting the information.

AI agents: Read AGENTS.md before ingesting or analyzing the information. For maintenance tasks, also read tools/AGENTS-TOOLS.md.

Related Resources

Related resources can reflect different revisions. Check their source versions and dates when comparing them with this dataset.

Maintenance

The tools/ directory is internal maintenance infrastructure for FedRAMP developers. Most users and agents analyzing the information should ignore it; installing or running these tools is not required to consume the dataset.

FedRAMP developers can use tools/README.md for setup, validation, normalization, tests, exports, and Git hooks. Maintenance agents must also follow tools/AGENTS-TOOLS.md.

About

This repository contains the structured machine-readable rules for FedRAMP.

Resources

Stars

43 stars

Watchers

11 watching

Forks

Releases

Packages

Contributors

Languages