Documentation
Supported systems
Where the agent runs, and what it recognises there.
Operating systems
- Architecture
- x86_64 with systemd
- Debian and Ubuntu
- Current releases
- RHEL-compatible
- Rocky Linux, AlmaLinux and other RHEL-compatible distributions
- Not supported
- Shared hosting without root; 32-bit and ARM servers; anything that is not Linux
Tools the agent works with
- Firewalls
- fail2ban, CrowdSec, iptables, ufw, firewalld, CSF: blocks go through whichever the server runs
- Package managers
- dpkg and apt; rpm with dnf or yum
- Control panels
- cPanel, Plesk, DirectAdmin
- Web servers
- nginx, Apache, Caddy, and sites published by Docker
Vulnerability matching
CVE matching uses OSV.dev. SecAI matches Ubuntu, Debian, Alpine, Rocky Linux and AlmaLinux, each against its own advisories. OSV.dev's Red Hat data is organised by Red Hat product stream rather than by release, and SecAI does not map it yet, so on a Red Hat Enterprise Linux server SecAI skips vulnerability matching rather than guess.
Reviewed against the implementation on 2026-09-20. Something wrong? Tell us.