leehowder/OpenCMMC
β 1 star | License: MIT | Recommendation: HIGH
What it is
Open-source CMMC Level 2 framework with SSP templates, per-control evidence artifacts, enclave designs, and continuous monitoring guidance. Built for small defense contractors.
Key files
- 35 markdown files covering every control family
05-Evidence/β per-control evidence requirements (AC.L2-3.1.x-Evidence.md for each)- Assessor-aware: written to match what C3PAO assessors actually look for
How it could be used
- Evidence collection guide β per-control breakdown of exactly what evidence to gather
- SSP template β structured for actual C3PAO assessment
- Assessment prep β organized by the same structure assessors use
Notes
Unique in being "assessor-aware" β written from practitioner perspective. The per-control evidence files are especially valuable.