A library of rules for Conftest used to detect misconfigurations within Terraform configuration files
☆190Sep 20, 2022Updated 3 years ago
Alternatives and similar repositories for confectionery
Users that are interested in confectionery are comparing it to the libraries listed below
Sorting:
- CLI for searching Rego policies☆105Feb 5, 2022Updated 4 years ago
- Automatically removes Cloud managed services and Kubernetes resources based on tags with TTL☆227Jan 15, 2026Updated last month
- This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)☆63Aug 4, 2021Updated 4 years ago
- Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frame…☆224Aug 11, 2023Updated 2 years ago
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆963Sep 3, 2024Updated last year
- Policy as Code framework to control your Terraform deployments with HCL files.☆25Mar 19, 2023Updated 2 years ago
- Safer AWS SCP deployments via real-time monitoring☆56Sep 30, 2023Updated 2 years ago
- Fugue Rego Toolkit☆235Jun 30, 2022Updated 3 years ago
- ☆284Dec 1, 2022Updated 3 years ago
- ☆178Jun 19, 2025Updated 8 months ago
- CloudSplaining on AWS Managed Policies☆44Sep 8, 2025Updated 5 months ago
- A tool to help with some Terraform operations☆90Aug 14, 2025Updated 6 months ago
- A curated list of OPA related tools, frameworks and articles☆865Jan 16, 2026Updated last month
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆60Oct 19, 2023Updated 2 years ago
- Write tests against structured configuration data using the Open Policy Agent Rego query language☆3,129Feb 23, 2026Updated last week
- Create Kubernetes AdmissionReview requests from Kubernetes resource manifests☆159Jan 2, 2026Updated 2 months ago
- PolicyGlass allows you to analyse one or more AWS policies' effective permissions in aggregate, by restating them in the form of PolicySh…☆60Jan 9, 2022Updated 4 years ago
- A simple tool for converting Rego (OPA) rule into command.☆30Jun 1, 2022Updated 3 years ago
- Self-hosted GitHub Actions runner on GCP using GCE.☆39Jun 25, 2023Updated 2 years ago
- Open source compliance tool for development platforms.☆285Oct 30, 2023Updated 2 years ago
- Watch your in cluster Kubernetes manifests for OPA policy violations and export them as Prometheus metrics☆50Jul 4, 2023Updated 2 years ago
- A wrapper around terraform state commands to provide guard rails 🔒☆36Jan 4, 2023Updated 3 years ago
- Terratag is a CLI tool that enables users of Terraform to automatically create and maintain tags across their entire set of AWS, Azure, a…☆1,042Dec 17, 2025Updated 2 months ago
- Look up region and other information for any AWS IP address☆89Feb 27, 2023Updated 3 years ago
- A policy management tool for interacting with Gatekeeper☆392Nov 20, 2025Updated 3 months ago
- Detect, track and alert on infrastructure drift☆2,621Jan 30, 2026Updated last month
- Generate an IAM policy from AWS, Azure, or Google Cloud (GCP) calls using client-side monitoring (CSM) or embedded proxy☆3,341Nov 13, 2025Updated 3 months ago
- Allows you to manage configuration and secrets from multiple provider while masking the secrets at the deployment☆70Nov 14, 2022Updated 3 years ago
- Identity & Access Management simplified and secure.☆260Mar 6, 2023Updated 2 years ago
- Sets up Open Policy Agent CLI in your GitHub Actions workflow.☆55Jan 12, 2026Updated last month
- Automatically resize your ebs☆45Mar 1, 2023Updated 3 years ago
- Open-source components of CyberArk Certificate Manager for Kubernetes Discovery.☆260Updated this week
- Style guide for Rego☆203Jan 5, 2026Updated last month
- Dockerfile Security Checker using OPA Rego policies with Conftest☆62Jun 27, 2022Updated 3 years ago
- Cloudformation Template and Lambda to detect if Instance Profile credentials are being used outside your AWS Account.☆29Aug 18, 2019Updated 6 years ago
- A kitchen-sink of terraform tools☆28Updated this week
- Help manage AWS systems manager with helpers☆389Oct 17, 2022Updated 3 years ago
- a lightweight, security focused, BDD test framework against terraform.☆1,439Dec 8, 2025Updated 2 months ago
- Recursively test a directory tree for Terraform diffs and coverage☆52Jul 18, 2023Updated 2 years ago