tfsec
Code scanner
A tool for identifying potential misconfigurations in Terraform code during the software development process
Tfsec is now part of Trivy
7k stars
70 watching
541 forks
Language: Go
last commit: 2 months ago
Linked from 5 awesome lists
awsazurecicompliancedevopsdevsecopsdigitaloceangogoogle-cloud-platformhacktoberfestinfrastructure-as-codelintermisconfigurationscannersecuritystatic-analysisterraformterraform-securityvulnerability-scanners
Related projects:
Repository | Description | Stars |
---|---|---|
| Detects security vulnerabilities and compliance issues in infrastructure code before provisioning cloud-native infrastructure. | 4,779 |
| Automates security testing of Terraform configurations on GitHub pull requests. | 72 |
| A toolchain that scans source code and infrastructure IaC for security risks and provides a unified report. | 831 |
| A multi-cloud deployment tool designed to test and demonstrate the vulnerability of cloud infrastructure configurations | 541 |
| Identifies security flaws in software projects through static code analysis | 1,154 |
| Detects vulnerabilities in C# and VB.NET code | 942 |
| Analyzes Kubernetes resources for security vulnerabilities | 1,255 |
| Utility to filter sensitive output from terraform plan and apply executions | 202 |
| A tool designed to detect security risks in cloud infrastructure accounts | 3,372 |
| Terraform code generator for consistent and maintainable configuration files | 83 |
| An automated tool suite to assess and improve cloud security across multiple platforms | 1,145 |
| Tool to scan and gather information about a system's configuration and components. | 487 |
| A tool for detecting security vulnerabilities and compliance issues in infrastructure-as-code projects | 2,117 |
| A tool to automatically scan and enforce security best practices in CloudFormation templates. | 1,260 |
| Identifies and generates XXE payloads from local DTDs found in file systems. | 615 |