awesome-repositories.com
ब्लॉग
MCP
awesome-repositories.com

AI-संचालित खोज के साथ बेहतरीन ओपन-सोर्स रिपॉजिटरी खोजें।

एक्सप्लोर करेंक्यूरेटेड खोजेंओपन-सोर्स विकल्पसेल्फ-होस्टेड सॉफ्टवेयरब्लॉगसाइटमैप
प्रोजेक्टMCP सर्वरहमारे बारे मेंहम रैंकिंग कैसे करते हैंप्रेस
कानूनीगोपनीयताशर्तें
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to cesar-rodriguez/terrascan

Open-source alternatives to Terrascan

30 open-source projects similar to cesar-rodriguez/terrascan, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Terrascan alternative.

  • aws-cloudformation/cloudformation-guardaws-cloudformation का अवतार

    aws-cloudformation/cloudformation-guard

    1,384GitHub पर देखें↗

    Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules. Take this survey to provide feedback about cfn-guard: https://amazonmr.au1.qualtrics.com/jfe/form/SV_bpyzpfoYGGuuUl0

    Rust
    GitHub पर देखें↗1,384
  • tfsec/tfsectfsec का अवतार

    tfsec/tfsec

    7,013GitHub पर देखें↗

    tfsec is a static analysis tool and security scanner for infrastructure as code, specifically designed to detect misconfigurations and compliance violations in Terraform and cloud infrastructure definitions before deployment. It functions as a cloud security policy engine that identifies vulnerabilities across multiple cloud platforms. The tool provides capabilities for cloud compliance auditing and scanning of Cloud Development Kit code. It supports custom security policy enforcement and allows for the definition of organization-specific security requirements. The scanner includes features

    Go
    GitHub पर देखें↗7,013
  • wata727/tflintwata727 का अवतार

    wata727/tflint

    0GitHub पर देखें↗

    A Pluggable Terraform Linter

    GitHub पर देखें↗0
  • awslabs/cfn-python-lintawslabs का अवतार

    awslabs/cfn-python-lint

    2,624GitHub पर देखें↗

    CloudFormation Linter

    Python
    GitHub पर देखें↗2,624
  • bridgecrewio/checkovbridgecrewio का अवतार

    bridgecrewio/checkov

    8,798GitHub पर देखें↗

    Checkov is a static analysis tool and security scanner designed to identify misconfigurations in infrastructure as code, container images, and Kubernetes configurations. It functions as a cloud security posture tool, an SCA vulnerability scanner, and a secret scanning utility to prevent security breaches and version control leaks. The project distinguishes itself through deep graph analysis and variable resolution, allowing it to map relationships between interconnected resources and evaluate the final state of infrastructure attributes. It provides extensibility for defining custom security

    Python
    GitHub पर देखें↗8,798

AI सर्च

और अधिक बेहतरीन रिपॉजिटरी खोजें

अपनी ज़रूरत को सरल भाषा में बताएं — AI हजारों क्यूरेटेड ओपन-सोर्स प्रोजेक्ट्स को प्रासंगिकता के आधार पर रैंक करता है।

Find more with AI search
  • bridgecrewio/yorbridgecrewio का अवतार

    bridgecrewio/yor

    927GitHub पर देखें↗

    Extensible auto-tagger for your IaC files. The ultimate way to link entities in the cloud back to the codified resource which created it.

    Go
    GitHub पर देखें↗927
  • cdk8s-team/cdk8scdk8s-team का अवतार

    cdk8s-team/cdk8s

    4,830GitHub पर देखें↗

    cdk8s is a Kubernetes infrastructure as code framework and manifest generator. It provides a cloud native development environment for defining system components and reusable abstractions using general purpose programming languages, which are then synthesized into standard YAML manifests. The framework uses a declarative API and object-oriented modeling to transform code into pure manifest files. These files are generated for use with any Kubernetes cluster via existing deployment tools. The project enables the creation of hierarchical resource patterns and reusable abstractions. It employs s

    JavaScript
    GitHub पर देखें↗4,830
  • checkmarx/kicscheckmarx का अवतार

    checkmarx/kics

    2,649GitHub पर देखें↗

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent
    GitHub पर देखें↗2,649
  • coreos/claircoreos का अवतार

    coreos/clair

    11,011GitHub पर देखें↗

    Clair is a container vulnerability scanner that performs static analysis of container images to identify known security vulnerabilities. It functions as an analyzer for OCI and Docker images, indexing their contents to detect security risks and outdated packages without requiring the containers to be running. The tool identifies vulnerabilities by matching indexed container components against security databases to find common vulnerabilities and exposures. This process involves analyzing filesystem layers to track the provenance and versioning of packages across the image hierarchy. The proj

    Go
    GitHub पर देखें↗11,011
  • digitalocean/clusterlintdigitalocean का अवतार

    digitalocean/clusterlint

    591GitHub पर देखें↗

    A best practices checker for Kubernetes clusters. 🤠

    Go
    GitHub पर देखें↗591
  • eerkunt/terraform-complianceeerkunt का अवतार

    eerkunt/terraform-compliance

    1,457GitHub पर देखें↗

    a lightweight, security focused, BDD test framework against terraform.

    Python
    GitHub पर देखें↗1,457
  • fugue/regulafugue का अवतार

    fugue/regula

    964GitHub पर देखें↗

    Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes security and compliance using Open Policy Agent/Rego

    Open Policy Agent
    GitHub पर देखें↗964
  • goodwithtech/docklegoodwithtech का अवतार

    goodwithtech/dockle

    3,264GitHub पर देखें↗

    Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start

    Go
    GitHub पर देखें↗3,264
  • google/bloatygoogle का अवतार

    google/bloaty

    5,488GitHub पर देखें↗

    Bloaty is a binary size profiler and executable format analyzer that attributes every byte of a binary to specific symbols or compile units. It functions as a compilation unit profiler and C++ symbol demangler, mapping binary size back to source files and translating mangled names into human-readable formats. The project distinguishes itself as a binary diffing tool capable of comparing two versions of a binary to isolate specific symbols or sections responsible for size regressions. It provides specialized support for recovering symbols in stripped binaries by associating them with external

    C++
    GitHub पर देखें↗5,488
  • hashicorp/terraformhashicorp का अवतार

    hashicorp/terraform

    48,720GitHub पर देखें↗

    Terraform is a declarative infrastructure-as-code tool designed to manage the lifecycle of cloud and on-premises resources. It functions as a workflow engine that reconciles a defined desired state against real-world infrastructure, using a persistent state-tracking layer to maintain consistency and visibility across distributed environments. By mapping infrastructure components into a directed acyclic graph, the system calculates the optimal order for provisioning, updating, or destroying resources. The platform is distinguished by its extensible plugin-based architecture, which decouples co

    Gocloudcloud-managementgraph
    GitHub पर देखें↗48,720
  • helm/chart-testinghelm का अवतार

    helm/chart-testing

    1,632GitHub पर देखें↗

    CLI tool for linting and testing Helm charts

    Go
    GitHub पर देखें↗1,632
  • horsicq/nauz-file-detectorhorsicq का अवतार

    horsicq/Nauz-File-Detector

    574GitHub पर देखें↗

    Linker/Compiler/Tool detector for Windows, Linux and MacOS.

    C++
    GitHub पर देखें↗574
  • jkinder/jakstabjkinder का अवतार

    jkinder/jakstab

    164GitHub पर देखें↗

    The Jakstab static analysis platform for binaries

    Java
    GitHub पर देखें↗164
  • liamg/tfsecliamg का अवतार

    liamg/tfsec

    7,013GitHub पर देखें↗

    tfsec is a static analysis tool and security scanner for Terraform configuration files. It functions as an infrastructure as code security scanner and compliance linter designed to detect misconfigurations and vulnerabilities across multiple cloud providers before resources are deployed. The tool identifies security risks by analyzing infrastructure code and variable files to evaluate the final state of the environment. It supports custom policy enforcement and allows for the suppression of specific security warnings through inline comments. Its capabilities cover cloud security posture mana

    Go
    GitHub पर देखें↗7,013
  • lukasmartinelli/hadolintlukasmartinelli का अवतार

    lukasmartinelli/hadolint

    12,225GitHub पर देखें↗

    Hadolint is a Dockerfile linter and Haskell-based static analysis tool. It analyzes container image configuration files against a set of rules to ensure valid syntax and adherence to best practices. The tool functions as a wrapper for shell checkers to inspect inline shell commands and scripts within build instructions, identifying scripting errors and bugs. It also includes security auditing capabilities to warn when images are pulled from registries not explicitly listed as trusted. The analysis engine covers quality assurance through label schema validation, syntax pattern verification, a

    Haskell
    GitHub पर देखें↗12,225
  • microsoft/binskimMicrosoft का अवतार

    Microsoft/binskim

    855GitHub पर देखें↗

    A binary static analysis tool that provides security and correctness results for Windows Portable Executable and *nix ELF binary formats

    C#
    GitHub पर देखें↗855
  • mozilla-services/pytest-servicesmozilla-services का अवतार

    mozilla-services/pytest-services

    108GitHub पर देखें↗

    Unit testing framework for test driven security of AWS, GCP, Heroku and more.

    Python
    GitHub पर देखें↗108
  • nickthesecuritydude/aws-securityhub-cis-compliance-automationNickTheSecurityDude का अवतार

    NickTheSecurityDude/AWS-SecurityHub-CIS-Compliance-Automation

    40GitHub पर देखें↗

    This script will help you achieve 100%, or nearly 100%, compliance.

    Python
    GitHub पर देखें↗40
  • notharshhaa/aws-projectsN

    NotHarshhaa/AWS-Projects

    0GitHub पर देखें↗

    forks-shield: https://img.shields.io/github/forks/NotHarshhaa/AWS-Projects?style=for-the-badge&logo=github&logoColor=white&color=orange forks-url: https://github.com/NotHarshhaa/AWS-Projects/network/members

    GitHub पर देखें↗0
  • opentofu/opentofuopentofu का अवतार

    opentofu/opentofu

    29,206GitHub पर देखें↗

    OpenTofu is a declarative infrastructure orchestrator that automates the provisioning and management of cloud resources. It functions as a platform-agnostic interface, allowing users to define their desired environment state in configuration files, which the system then reconciles against live infrastructure to calculate and execute necessary updates. The project utilizes a graph-based execution engine to determine the optimal sequence for resource operations, enabling the parallel processing of independent components to reduce deployment times. To support complex, multi-platform environments

    Go
    GitHub पर देखें↗29,206
  • ossillate-inc/packjossillate-inc का अवतार

    ossillate-inc/packj

    688GitHub पर देखें↗

    Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

    Python
    GitHub पर देखें↗688
  • pixee/codemodder-javapixee का अवतार

    pixee/codemodder-java

    41GitHub पर देखें↗

    a framework for building java codemods

    Java
    GitHub पर देखें↗41
  • pulumi/pulumipulumi का अवतार

    pulumi/pulumi

    24,797GitHub पर देखें↗

    Pulumi is an infrastructure-as-code framework that enables the definition, deployment, and management of cloud resources using general-purpose programming languages. It functions as a cloud resource orchestrator that coordinates the lifecycle of heterogeneous infrastructure by executing code to construct dependency graphs and reconciling the desired state against actual cloud environments. The platform distinguishes itself through a language-host runtime bridge that allows developers to use standard programming languages to define infrastructure, rather than relying solely on domain-specific

    Goawsazurecloud
    GitHub पर देखें↗24,797
  • puresec/serverless-puresec-clipuresec का अवतार

    puresec/serverless-puresec-cli

    250GitHub पर देखें↗

    Serverless plugin for least privileges.

    JavaScript
    GitHub पर देखें↗250
  • rustwasm/twiggyrustwasm का अवतार

    rustwasm/twiggy

    1,429GitHub पर देखें↗

    Twiggy🌱 is a code size profiler

    Rust
    GitHub पर देखें↗1,429