Documentation

Supported systems

Where the agent runs, and what it recognises there.

Operating systems

Architecture
x86_64 with systemd
Debian and Ubuntu
Current releases
RHEL-compatible
Rocky Linux, AlmaLinux and other RHEL-compatible distributions
Not supported
Shared hosting without root; 32-bit and ARM servers; anything that is not Linux

Tools the agent works with

Firewalls
fail2ban, CrowdSec, iptables, ufw, firewalld, CSF: blocks go through whichever the server runs
Package managers
dpkg and apt; rpm with dnf or yum
Control panels
cPanel, Plesk, DirectAdmin
Web servers
nginx, Apache, Caddy, and sites published by Docker

Vulnerability matching

CVE matching uses OSV.dev. SecAI matches Ubuntu, Debian, Alpine, Rocky Linux and AlmaLinux, each against its own advisories. OSV.dev's Red Hat data is organised by Red Hat product stream rather than by release, and SecAI does not map it yet, so on a Red Hat Enterprise Linux server SecAI skips vulnerability matching rather than guess.

Reviewed against the implementation on 2026-09-20. Something wrong? Tell us.

Trust Center