Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: OpenID Connect / OAuth client 3.0.0-alpha9 New alpha version released for module openid_connect (3.0.0-alpha9). Release: Opensolr Search 4.5.0 Minor update available for module opensolr_search (4.5.0). Release: Timelinr 1.0.1 Minor update available for module timelinr (1.0.1). Usage Milestone: Simplify Module simplify crossed 10,000 active installs. Usage Milestone: Views Reference Filter Module entityreference_filter crossed 10,000 active installs. Usage Milestone: Dropdown Language Module dropdown_language crossed 10,000 active installs. Usage Milestone: Paragraphs Browser Module paragraphs_browser crossed 10,000 active installs. Usage Milestone: OpenAPI Module openapi crossed 10,000 active installs. Usage Milestone: Decoupled Router Module decoupled_router crossed 10,000 active installs. Module Revived: Entityqueue Buttons 1.1.2 Module entityqueue_buttons updated after 8 months of inactivity (1.1.2).

This module provides a centralized checklist of security best practices for Drupal sites. It guides administrators and developers in implementing recommended configurations, modules, and server hardening steps.

The Security Audit Checklist module provides a simple, centralised checklist of best practices to help improve the security of a Drupal site.
It is intended to guide site administrators and developers in applying recommended configurations, modules, and server-level hardening steps.

Features

This module displays a list of recommended security measures for a Drupal site,
For Example:

  • - Enable Two-Factor Authentication
  • - Security Headers
  • - File Permissions
  • - Secure Cookies
  • - Update Manager Restrictions
  • etc...

Installation

Install as you would normally install a contributed Drupal module. For further
information, see [Installing Drupal Modules](https://www.drupal.org/docs/extending-drupal/installing-drupal-modules).

Additional Requirements

This module requires the following modules:

Configuration

To start using the module:

  • go to `/admin/config/development/security_audit_checklist`.
  • It will pre-check any completed items it is able to auto detect.
  • Start working through the rest, and click "Save" to save your progress!

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
1
Tracked since
Sep 2025
Latest release
11 months ago
Releases (12 mo)
1 ▲ from 0
Maintenance
Slowing

Releases

Version Type Core Release date
1.0.x-dev Dev 10–11 Sep 2, 2025