Donjon Platform Knowledge Base

Enterprise-grade security assessment, risk quantification, and compliance platform documentation.

v7.0 🔒 Post-Quantum Secure ML-DSA-65 + Ed25519

Documentation Guides

Platform Overview

Donjon v7.0 is a complete, portable security assessment platform that replaces $110K+/yr in commercial tooling with a single solution. It runs from a USB drive, fixed installation, or CI/CD pipeline.

Key Capabilities

CapabilityDescription
Vulnerability AssessmentNetwork, web, SSL/TLS, credential, and OpenVAS scanning with 318K+ CVE intelligence
FAIR Risk QuantificationMonte Carlo simulation translating findings into dollar-quantified risk (ALE)
AI-Powered AnalysisMulti-backend AI (template/Ollama/OpenAI) with data sanitization
Container SecurityDocker/Podman image and runtime security assessment
Cloud SecurityAWS, Azure, GCP misconfiguration detection
Attack Surface ManagementCertificate transparency, DNS enumeration, Shodan/Censys integration
SBOM GenerationCycloneDX 1.4 and SPDX 2.3 from 10 package formats
Compliance10+ frameworks: NIST 800-53, HIPAA, PCI-DSS v4, ISO 27001, SOC 2, CMMC, FedRAMP, GDPR, SOX
CI/CD IntegrationGitHub Actions, GitLab CI, Jenkins with SARIF export and security gates
Post-Quantum LicensingML-DSA-65 + Ed25519 dual-signature license verification

License Tiers

Feature Community Pro Enterprise Managed
Core Scanners (7)
All Scanners
Scan Depths Quick + Standard All All All
Max Targets / Scan 16 Unlimited Unlimited Unlimited
Export Formats CSV, JSON All All All
AI Queries / Day 10 Unlimited Unlimited Unlimited
Scheduled Scans
SSO / RBAC
Multi-Tenant
MSSP Client Management
Max Users 1 25 Unlimited Unlimited
API Rate Limit 100/hr 10,000/hr Unlimited Unlimited
Priority Support

System Requirements

All Platforms
  • Python 3.10+ (3.11+ recommended)
  • 4 GB RAM minimum
  • 1 GB disk (100 MB base + 800 MB intel DB)
Recommended External Tools
  • nmap — Network scanning
  • nuclei — Vulnerability scanning
  • nikto — Web scanning
  • testssl.sh — SSL assessment
  • trivy — Container/SBOM scanning
  • amass — DNS enumeration

All scanners gracefully degrade when external tools are unavailable. The platform operates fully with just Python installed.