meridian benchmark

Benchmarked against real, popular open-source codebases

Meridian ran its full assessment pipeline against 23 open-source projects across 5 categories — AI/LLM tooling, developer platforms, SaaS, RAG frameworks, and security/identity infrastructure — 100,008 files, 15,241,993 lines of code — and identified applicable regulations, capability gaps, and enterprise readiness requirements for each. Every report below is the actual, unedited output.

These are point-in-time scans of public repositories, run for benchmarking purposes — not endorsements by, or audits commissioned by, the projects listed. Full reports are linked from every card.

23repositories scanned
100,008files scanned
15,241,993lines of code
local-onlyzero telemetry, nothing uploaded
Benchmark Suite

Pick a repository

Each report covers what Meridian detected, which regulations apply and why, enterprise-readiness gaps, and a prioritized roadmap — generated the same way for every repo, no manual tuning per report.

Why do the applicable regulations differ across similar-looking repos? Meridian scopes regulations from what a repository actually is, not just its category — whether it ships a hosted paid tier (PCI DSS), whether it's an actively operated production system (SOC 2), and jurisdiction/AI-usage signals (EU AI Act). Two tools in the same space can land on different regulations because one runs a billed cloud product and the other is self-hosted-only, or because one is actively maintained and the other is archived — see each report's Compliance Scope section for the specific reasoning.

AI / LLM Tooling

Flowise
Visual builder for LLM workflows and agents
Applicable Regulations
EU AI ActPCI DSS · contractualSOC 2 Trust Services Criteria · voluntary
6
Implemented
401
Applicable Controls
1851
Files
View full report →
Dify
Open-source LLM app development platform
Applicable Regulations
EU AI ActPCI DSS · contractualSOC 2 Trust Services Criteria · voluntary
53
Implemented
401
Applicable Controls
10391
Files
View full report →
Langflow
Visual framework for building multi-agent AI applications
Applicable Regulations
EU AI ActSOC 2 Trust Services Criteria · voluntary
6
Implemented
122
Applicable Controls
5488
Files
View full report →
Open WebUI
Self-hosted web interface for LLMs
Applicable Regulations
GDPREU AI ActSOC 2 Trust Services Criteria · voluntary
6
Implemented
236
Applicable Controls
323
Files
View full report →
CrewAI
Framework for orchestrating role-playing autonomous AI agents
Applicable Regulations
EU AI ActPCI DSS · contractualSOC 2 Trust Services Criteria · voluntary
53
Implemented
401
Applicable Controls
1272
Files
View full report →
Mem0
Memory layer for AI agents and assistants
Applicable Regulations
EU AI ActPCI DSS · contractualSOC 2 Trust Services Criteria · voluntary
6
Implemented
401
Applicable Controls
1051
Files
View full report →
Continue
Open-source AI code assistant
Applicable Regulations
EU AI Act
0
Implemented
60
Applicable Controls
1874
Files
View full report →
FastGPT
Knowledge-based platform for building AI assistants
Applicable Regulations
EU AI ActPCI DSS · contractualSOC 2 Trust Services Criteria · voluntary
53
Implemented
401
Applicable Controls
3509
Files
View full report →
Lobe Chat
Open-source AI chat framework with plugin support
Applicable Regulations
EU AI ActSOC 2 Trust Services Criteria · voluntary
6
Implemented
122
Applicable Controls
10387
Files
View full report →
OpenHands
AI software engineering agent platform
Applicable Regulations
EU AI ActSOC 2 Trust Services Criteria · voluntary
6
Implemented
122
Applicable Controls
2198
Files
View full report →

Developer Tools

SaaS

AI / RAG Frameworks

Security & Identity Infrastructure