wayfair-archive / terrafirma
A static analysis tool for Terraform plans.
☆45Updated 2 years ago
Alternatives and similar repositories for terrafirma:
Users that are interested in terrafirma are comparing it to the libraries listed below
- Manheim's Cloud Custodian (c7n) wrapper package, policy generator, runner, and supporting tools.☆45Updated 7 months ago
- InSpec CLI plugin for generating compliance controls from Terraform and CloudFormation☆105Updated 3 years ago
- Terraform InSpec Provisioner Plugin☆68Updated 6 years ago
- Example container image re-scan with Amazon ECR☆50Updated 3 years ago
- ☆53Updated 4 years ago
- Validate all your Customer IAM Policies against AWS Access Analyzer - Policy Validation☆43Updated 3 years ago
- CLI for searching Rego policies☆104Updated 2 years ago
- Terraform Module for Assumed Roles on AWS with IAM Groups Requiring MFA☆35Updated 3 months ago
- Terraform module for enabling flow logs for vpc and subnets.☆34Updated 3 months ago
- ☆79Updated 3 years ago
- Enhance the security of the EC2 metadata service. (Obsolete thanks to Instance Metadata Service Version 2, see note in README)☆31Updated 5 years ago
- A simple Amazon EKS manager for ephemeral clusters☆66Updated 2 years ago
- Terraform module to provision Service Control Policies (SCP) for AWS Organizations, Organizational Units, and AWS accounts☆50Updated 3 weeks ago
- GitOps for Teams (experimental hard fork of atlantis)☆14Updated 5 years ago
- InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark☆78Updated 3 weeks ago
- An example of using Sentinel policies in VCS in Terraform Enterprise☆26Updated last year
- Manages external Terraform modules☆38Updated 5 years ago
- Terraform provider for Policy Sentry (IAM least privilege generator and auditor)☆29Updated last year
- Cloud multi-account metadata management tool.☆88Updated 4 years ago
- Execute Terraform on Kubernetes☆73Updated last year
- A unified IAM+Kubernetes RBAC access control exploration tool☆77Updated 5 years ago
- SSH-Restricted deploys an SSH compliance rule (AWS Config) with auto-remediation via AWS Lambda if SSH access is public.☆30Updated 3 years ago
- CloudTrail and CloudWatch configuration with some basic security alarms.☆18Updated 7 years ago
- Marking instances dirty since 2018☆47Updated 5 years ago
- Falco container runtime security extras (default rulesets and more)☆49Updated 5 years ago
- Packer post-processor plugin for copying, encrypting, tagging a built AMI into other accounts.☆34Updated last month
- Run compliance and security controls to detect Terraform AWS resources deviating from security best practices prior to deployment using P…☆26Updated 3 months ago
- Simple DLP monitor for AWS S3 is a tool built on top of CloudWatch events and Lambda functions to alert you when data is transferred to S…☆17Updated 4 years ago
- cloud native software supply chain ☁️🔗☆63Updated 3 years ago
- Darkbit Cloud Security Tools☆25Updated 4 years ago