Supported IaC Flaw detectors

The detectors for IaC flaws listed below are classified by the target IaC framework / cloud provider and target resource.

AWS CloudFormation

Detectors that analyze CloudFormation templates for Amazon Web Services (AWS) assets.

Ansible / AWS

Ansible detectors for AWS IaC Playbooks.

Backup recovery

IAM

Ansible / Azure

Ansible detectors for Azure IaC Playbooks.

Ansible / Gcp

Docker

Detectors that analyze Docker assets, like Dockerfile and docker-compose.yml.

Application Security

Kubernetes

Detectors that analyze Kubernetes assets.

Multi-Framework / AWS

Multi-Framework detectors for AWS IaC templates (CloudFormation and Terraform).

Multi-Framework / Azure

Multi-Framework detectors for Azure IaC templates (ARM and Terraform).

Terraform / Github

Terraform (Github Actions)