osquery
The premium Open Source alternative to Tanium
🎯 Best for:Security teams needing cross-platform visibility into endpoint state via SQL.
What is osquery?
A flexible alternative to Carbon Black and CrowdStrike agents. It exposes operating system metrics as relational database tables that can be queried using standard SQL.
Tech Stack
C++Monitoring & Logs
Why osquery?
- • Unified interface for Linux/macOS/Windows
- • Low CPU/Memory footprint
- • Massive community query library
Limitations
- • Requires central log aggregator
- • No built-in remediation actions
- • Complex configuration management
3/4/2026
Last Update
2,554
Forks
664
Issues
Other
License
Financial Leak Detected
Stop the "SaaS Tax"
Your team could be burning cash. Switching to osquery instantly boosts your runway.
Competitor Cost
-$1,440
/ year (est. based on Tanium)
Self-Hosted
$0
/ year
Team Size10 Users
150+
SAVE 100%