iac-security
Here are 19 public repositories matching this topic...
Detect drift. Defend cloud.
-
Updated
Feb 21, 2026 - Go
Static IaC threat modeler , parses Terraform, CloudFormation, and Kubernetes manifests and applies STRIDE rules to produce a structured threat model report with a Mermaid DFD.
-
Updated
Feb 26, 2026 - Python
Cloud (IaC) Security plugin for JetBrains IDEs (e.g., IntelliJ IDEA, PyCharm)
-
Updated
Mar 15, 2026 - Kotlin
Free Browser Based Infrastructure as Code security scanner - Scan Terraform, Kubernetes, Docker, CloudFormation files for vulnerabilities in your browser. 180+ security rules, GitHub repo scanning, PDF reports. Privacy-first, no uploads.
-
Updated
Jan 31, 2026 - TypeScript
An enterprise-grade, agentless, and open-source cloud security platform for AWS, GCP, and Azure that combines CSPM, DSPM, CIEM, ASM, and vulnerability management with deterministic YAML policies and natural language querying.
-
Updated
Jan 30, 2026 - Python
Jenkins plugin for Xygeni - End to end software development and delivery security
-
Updated
May 1, 2025 - Java
One-command Ubuntu Server hardening to achieve cutting-edge security, with ZERO ongoing maintenance required.
-
Updated
Aug 23, 2025 - Shell
Security-focused prompt library and Claude Code skill for automated IaC security reviews. Covers Terraform, Kubernetes, Docker, Ansible, CloudFormation, and CI/CD pipelines. Compliance mapping to CIS, NIST 800-53, PCI-DSS, SOC2, HIPAA, and GDPR.
-
Updated
Mar 8, 2026 - Shell
Production-grade AWS multi-account landing zone. Blast radius design, SCP composition, account vending, CloudTrail detection pipeline. Security architecture depth.
-
Updated
Feb 22, 2026 - HCL
DevSecOps CI/CD pipeline scanner — Jenkins, GitHub Actions, GitLab, Azure Pipelines
-
Updated
Aug 12, 2025 - JavaScript
Real-time cloud storage security and IaC analysis platform. Detect misconfigurations, prevent PII exposure, and enforce compliance across AWS, Azure, and GCP
-
Updated
Feb 20, 2026 - TypeScript
Defense-in-depth security scanner for Java projects integrating 6 industry-standard tools (Trivy, Gitleaks, Semgrep, SpotBugs, Checkov, Hadolint) into a unified Dockerized pipeline. Also comes with a standalone installer.
-
Updated
Mar 12, 2026 - Python
An empirical evaluation framework for integrating real-time security feedback into LLM-based Infrastructure-as-Code generation using the Model Context Protocol (MCP).
-
Updated
Mar 3, 2026 - TypeScript
A 540-test empirical evaluation framework assessing the security of Infrastructure-as-Code generated by AI assistants (Copilot, Cursor, Windsurf).
-
Updated
Mar 3, 2026 - Python
ComputeScan analyzes tfplan.json to catch GPU oversizing, autoscaling misconfigurations, tag drift, and high-risk idle patterns. Instantly, offline, and with zero setup. Designed for AI/ML infra teams and fully aligned with the GuardSuite governance engine.
-
Updated
Dec 7, 2025 - Python
Free security scanner for vector databases and RAG systems. Checks access exposure, drift, misconfigurations, and data leakage risks.
-
Updated
Nov 27, 2025 - Python
🔍 Enhance cloud security visibility across AWS, GCP, and Azure with open-source tools for misconfiguration, data discovery, and vulnerability management.
-
Updated
Jan 18, 2026
🛡️ A curated list of awesome DevSecOps tools, best practices, and resources for securing CI/CD pipelines. Covers SCA, SAST, DAST, IaC, and Container Security.
-
Updated
Feb 23, 2026 - TypeScript
Improve this page
Add a description, image, and links to the iac-security topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the iac-security topic, visit your repo's landing page and select "manage topics."