Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
-
Updated
Apr 29, 2023 - Python
Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
Automate Kubernetes Configuration Editing
Policy and data administration, distribution, and real-time updates on top of Open Policy Agent
PacBot (Policy as Code Bot)
Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules.
A curated list of OPA related tools, frameworks and articles
A data standard to enable right-of-way regulation and two-way communication between mobility companies and local governments.
A curated list of blogs, videos, tutorials, code, tools, scripts, and anything useful to help you learn Azure Policy - by @jesseloudon
Style guide for Rego
The open-source policy-as-code software that provides analysis for Multi-Cloud and SaaS environments, you can get insight with natural language (powered by OpenAI).
MagTape Policy-as-Code for Kubernetes
A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.
Bicep and Terraform code examples for policy-as-code workflows. Azure governance guardrails and automation - by @jesseloudon
An open source, cloud-native security and policy project
Manage admission policies in your Kubernetes cluster with ease
Webhook server that evaluates WebAssembly policies to validate Kubernetes requests
A linting tool that helps you to write better Chef Infra cookbooks and InSpec profiles by detecting and automatically correcting style, syntax, and logic mistakes in your code.
Maintains an eventually consistent, human-readable, round-trip representation of your IAM in Git. Supports temporary access and permissions, multi-account cloud identities with dynamic permissions, and drift prevention.
Tool to achieve policy driven vetting of open source dependencies
Build flexible & composable abstractions for all your platform engineering tools.
Add a description, image, and links to the policy-as-code topic page so that developers can more easily learn about it.
To associate your repository with the policy-as-code topic, visit your repo's landing page and select "manage topics."