Security Audit Checklist
This module provides a centralized checklist of security best practices for Drupal sites. It guides administrators and developers in implementing recommended configurations, modules, and server hardening steps.
The Security Audit Checklist module provides a simple, centralised checklist of best practices to help improve the security of a Drupal site.
It is intended to guide site administrators and developers in applying recommended configurations, modules, and server-level hardening steps.
Features
This module displays a list of recommended security measures for a Drupal site,
For Example:
- - Enable Two-Factor Authentication
- - Security Headers
- - File Permissions
- - Secure Cookies
- - Update Manager Restrictions
- etc...
Installation
Install as you would normally install a contributed Drupal module. For further
information, see [Installing Drupal Modules](https://www.drupal.org/docs/extending-drupal/installing-drupal-modules).
Additional Requirements
This module requires the following modules:
- - [Checklist API](https://www.drupal.org/project/checklistapi)
Configuration
To start using the module:
- go to `/admin/config/development/security_audit_checklist`.
- It will pre-check any completed items it is able to auto detect.
- Start working through the rest, and click "Save" to save your progress!
Depends on
Dependencies of the latest stable release
No dependencies recorded for this project.
Required by
Tracked projects that depend on this one
No tracked projects depend on this one yet.
Activity
Releases
| Version | Type | Core | Notes | Release date | |
|---|---|---|---|---|---|
| 1.0.x-dev | Dev | 10–11 | Sep 2, 2025 |