> cat /dev/github | grep security-tools
discovered 03 Aug 2026

checkov

via awesome-list
→ View on GitHub
Checkov is a static code analysis tool designed for infrastructure as code (IaC), capable of scanning various frameworks such as Terraform, CloudFormation, Kubernetes, and Docker for security and compliance misconfigurations using a graph-based approach. It also performs Software Composition Analysis (SCA) on open source packages and images to identify Common Vulnerabilities and Exposures (CVEs). Notable features include extensive integration with popular IaC tools and its ability to enhance cloud security throughout the development lifecycle as part of the Prisma Cloud Application Security platform.