Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: OpenID Connect / OAuth client 3.0.0-alpha9 New alpha version released for module openid_connect (3.0.0-alpha9). Release: Opensolr Search 4.5.0 Minor update available for module opensolr_search (4.5.0). Release: Timelinr 1.0.1 Minor update available for module timelinr (1.0.1). Usage Milestone: Simplify Module simplify crossed 10,000 active installs. Usage Milestone: Views Reference Filter Module entityreference_filter crossed 10,000 active installs. Usage Milestone: Dropdown Language Module dropdown_language crossed 10,000 active installs. Usage Milestone: Paragraphs Browser Module paragraphs_browser crossed 10,000 active installs. Usage Milestone: OpenAPI Module openapi crossed 10,000 active installs. Usage Milestone: Decoupled Router Module decoupled_router crossed 10,000 active installs. Module Revived: Entityqueue Buttons 1.1.2 Module entityqueue_buttons updated after 8 months of inactivity (1.1.2).

Config Guardian

2 sites Security covered Drupal 10–11
View on drupal.org

Config Guardian helps teams manage Drupal configuration changes with confidence by providing point-in-time snapshots, visual impact analysis, and a reliable rollback system. It allows developers and SREs to see the potential risks of configuration changes and easily revert to a previous state if something goes wrong.

Config Guardian elevates Drupal configuration management to an enterprise standard. It provides a comprehensive safety net for development teams by introducing point-in-time snapshots, advanced impact analysis, and a reliable rollback engine.

While Drupal's core CMI is powerful, it lacks historical context and granular risk assessment. Config Guardian fills this gap, allowing Site Reliability Engineers (SREs) and developers to deploy changes with absolute confidence.

🛡️ Config Guardian Core Features

  • Instant Snapshots: Capture Active Config + Sync Directory in seconds.
  • Safe Rollback Engine: Simulation mode and conflict detection before restoring.
  • Visual Impact Analysis: D3.js interactive graph for dependency mapping.
  • Risk Assessment: Automatic risk scoring (0-100) for pending changes.
  • Integrity Verification: SHA-256 hashing ensures data is never corrupted.
  • Audit Trails: Detailed activity logging for compliance (Who, What, When).
  • Automated Backups: Hourly, Daily, or Weekly schedules with retention policies.

🚀 Why use Config Guardian?

Deploying configuration changes to production can be stressful. A missing dependency or an unexpected override can break critical site functionality. Config Guardian allows you to "Look before you leap" and "Undo" if you slip.

1. Visual Dependency Analysis

Don't read YAML files to understand relationships. Use the built-in Dependency Graph to visualize exactly how modifying a Field Storage will impact your Views, Search Indexes, and Form Displays. The module calculates a Risk Score to warn you about high-impact changes.

2. Disaster Recovery Strategy

Core configuration import is destructive. Config Guardian makes it reversible. Before any import, the system takes an automatic snapshot. If something goes wrong, the Rollback Engine restores the site to its exact previous state—including the sync directory—ensuring zero downtime.

📦 Installation

composer require drupal/config_guardian
drush en config_guardian -y

🔧 Advanced Integration

  • Drush Support: Full CLI integration for CI/CD pipelines (drush cg-snap, drush cg-rollback).
  • Performance: Zero impact on frontend performance. Admin dashboard uses smart caching tags.
  • Security: Snapshots are stored with optional GZIP compression and strict database-level access controls.

Developed and maintained by Andrés Moreno. Architecture follows strict Drupal Coding Standards and Enterprise Security Best Practices.

Depends on

Dependencies of the latest stable release

  • config Drupal core
  • file Drupal core

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
4
Tracked since
Dec 2025
Latest release
2 months ago
Releases (12 mo)
4 ▲ from 0
Maintenance
Active

Release Timeline

Releases

Version Type Core Release date
1.0.3 Stable 10–11 Jun 12, 2026
1.0.2 Stable 10–11 Jun 8, 2026
1.0.1 Stable 10–11 May 25, 2026
1.0.0 Stable 10–11 Dec 10, 2025