awesome-repositories.com
Blog
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectAboutHow we rankPressMCP server
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to checkmarx/kics

Open-source alternatives to Kics

30 open-source projects similar to checkmarx/kics, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Kics alternative.

  • bridgecrewio/checkovbridgecrewio avatar

    bridgecrewio/checkov

    8,798View on GitHub↗

    Checkov is a static analysis tool and security scanner designed to identify misconfigurations in infrastructure as code, container images, and Kubernetes configurations. It functions as a cloud security posture tool, an SCA vulnerability scanner, and a secret scanning utility to prevent security breaches and version control leaks. The project distinguishes itself through deep graph analysis and variable resolution, allowing it to map relationships between interconnected resources and evaluate the final state of infrastructure attributes. It provides extensibility for defining custom security

    Python
    View on GitHub↗8,798
  • aquasecurity/trivyaquasecurity avatar

    aquasecurity/trivy

    36,462View on GitHub↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    View on GitHub↗36,462
  • fugue/regulafugue avatar

    fugue/regula

    964View on GitHub↗

    Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes security and compliance using Open Policy Agent/Rego

    Open Policy Agent
    View on GitHub↗964

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
bridgecrewio/yorbridgecrewio avatar

bridgecrewio/yor

927View on GitHub↗

Extensible auto-tagger for your IaC files. The ultimate way to link entities in the cloud back to the codified resource which created it.

Go
View on GitHub↗927
  • deepfence/threatmapperdeepfence avatar

    deepfence/ThreatMapper

    5,282View on GitHub↗

    ThreatMapper is a cloud native application protection platform and infrastructure security scanner. It functions as a vulnerability management system and cloud workload telemetry collector designed to monitor workloads and detect security risks across cloud and container environments. The platform distinguishes itself through a network traffic visualizer that uses machine learning to classify communication patterns and a graph-based attack mapping system to identify high-risk paths between vulnerabilities and network dependencies. Its broader capabilities cover cloud infrastructure complianc

    TypeScriptcloud-nativecloudsecuritycnapp
    View on GitHub↗5,282
  • snyk/clisnyk avatar

    snyk/cli

    5,428View on GitHub↗

    The Snyk CLI is a command-line security scanner that detects known vulnerabilities across open-source dependencies, proprietary application code, container images, and infrastructure-as-code configuration files. It also serves as a platform management tool, allowing users to configure organizations, users, SSO, and reporting from the terminal rather than the web dashboard. The CLI integrates directly into development workflows, enabling scanning within IDEs, build pipelines, and version control systems. It implements static analysis with interfile data flow analysis to find complex security f

    TypeScriptmonitorsecuritysnyk
    View on GitHub↗5,428
  • chenrui333/terraformerchenrui333 avatar

    chenrui333/terraformer

    8View on GitHub↗

    CLI tool to generate terraform files from existing infrastructure (reverse Terraform).

    Go
    View on GitHub↗8
  • busser/tfautomvbusser avatar

    busser/tfautomv

    895View on GitHub↗

    Generate Terraform moved blocks automatically for painless refactoring

    Go
    View on GitHub↗895
  • chrislewisdev/prettyplanchrislewisdev avatar

    chrislewisdev/prettyplan

    187View on GitHub↗

    A formatting tool to help make large Terraform plans easier to review.

    TypeScript
    View on GitHub↗187
  • azure/aztfexportAzure avatar

    Azure/aztfexport

    1,895View on GitHub↗

    A tool to bring existing Azure resources under Terraform's management

    Go
    View on GitHub↗1,895
  • bridgecrewio/airiambridgecrewio avatar

    bridgecrewio/AirIAM

    824View on GitHub↗

    Least privilege AWS IAM Terraformer

    Python
    View on GitHub↗824
  • briefercloud/layerformbriefercloud avatar

    briefercloud/layerform

    1,207View on GitHub↗

    Layerform helps engineers create reusable environment stacks using plain .tf files. Ideal for multiple "staging" environments.

    Go
    View on GitHub↗1,207
  • camptocamp/terraboardcamptocamp avatar

    camptocamp/terraboard

    2,007View on GitHub↗

    :earth_africa: :clipboard: A web dashboard to inspect Terraform States

    Go
    View on GitHub↗2,007
  • chenrui333/terradozerchenrui333 avatar

    chenrui333/terradozer

    2View on GitHub↗

    terradozer

    Go
    View on GitHub↗2
  • awslabs/terraform-iam-policy-validatorawslabs avatar

    awslabs/terraform-iam-policy-validator

    347View on GitHub↗

    A command line tool that validates AWS IAM Policies in a Terraform template against AWS IAM best practices

    Python
    View on GitHub↗347
  • bflad/tfproviderlintbflad avatar

    bflad/tfproviderlint

    139View on GitHub↗

    Terraform Provider Lint Tool

    Go
    View on GitHub↗139
  • andrewbaxter/terrarsandrewbaxter avatar

    andrewbaxter/terrars

    114View on GitHub↗

    Terraform in Rust

    Rust
    View on GitHub↗114
  • asdf-community/asdf-hashicorpasdf-community avatar

    asdf-community/asdf-hashicorp

    263View on GitHub↗

    HashiCorp plugin for the asdf version manager maintainer=@DustinChaloupka, @nathantypanski, @radditude

    Shell
    View on GitHub↗263
  • aws-samples/aws2tfaws-samples avatar

    aws-samples/aws2tf

    749View on GitHub↗

    aws2tf - automates the importing of existing AWS resources into Terraform and outputs the Terraform HCL code.

    Python
    View on GitHub↗749
  • anmolnagpal/terraform-ai-skillsanmolnagpal avatar

    anmolnagpal/terraform-ai-skills

    2View on GitHub↗

    🤖 AI-powered Terraform module management across AWS, GCP, Azure, DigitalOcean - Save 97% of maintenance time

    Markdown
    View on GitHub↗2
  • alexnabokikh/tfsortAlexNabokikh avatar

    AlexNabokikh/tfsort

    237View on GitHub↗

    A CLI utility to sort Terraform variables and outputs

    Go
    View on GitHub↗237
  • antonbabenko/modules.tf-lambdaantonbabenko avatar

    antonbabenko/modules.tf-lambda

    356View on GitHub↗

    Infrastructure as code generator - from visual diagrams created with Cloudcraft.co to Terraform

    Python
    View on GitHub↗356
  • antonbabenko/pre-commit-terraformantonbabenko avatar

    antonbabenko/pre-commit-terraform

    3,735View on GitHub↗

    This project is a set of git pre-commit hooks designed to automate the formatting, linting, and validation of Terraform configurations. It functions as an infrastructure as code linter, security scanner, cost estimator, and documentation generator to ensure code quality before commits are finalized. The tool distinguishes itself by providing specialized capabilities for infrastructure workflows, such as scanning templates for security vulnerabilities and hardcoded secrets, calculating projected cloud spending against budgets, and automatically extracting module definitions to populate readme

    Shell
    View on GitHub↗3,735
  • 0xdones/tfgen0xDones avatar

    0xDones/tfgen

    90View on GitHub↗

    Terraform code generator for consistent codebase and DRY

    Go
    View on GitHub↗90
  • anchore/grypeanchore avatar

    anchore/grype

    12,423View on GitHub↗

    Grype is a command-line security scanner designed to identify known vulnerabilities within container images, filesystems, and software manifests. It functions as a software composition analysis tool that detects security flaws in application components and open-source libraries to support supply chain security. The tool distinguishes itself by reconstructing the final state of container images through layered filesystem inspection and normalizing diverse package formats into a unified dependency graph. It maintains a local cache of security advisories synchronized from multiple upstream sourc

    Gocontainer-imagecontainerscyclonedx
    View on GitHub↗12,423
  • 28mm/blast-radius28mm avatar

    28mm/blast-radius

    2,188View on GitHub↗

    Interactive visualizations of Terraform dependency graphs using d3.js

    JavaScript
    View on GitHub↗2,188
  • accurics/terrascanaccurics avatar

    accurics/terrascan

    5,210View on GitHub↗

    Terrascan is an infrastructure as code security scanner and cloud configuration auditor designed to detect security violations and compliance risks in cloud templates and Dockerfiles before provisioning. It utilizes the Open Policy Agent to evaluate infrastructure templates against both standard security policies and custom organizational rules. The project functions as a security guardrail within build pipelines, blocking risky deployments by integrating scanning logic directly into CI/CD workflows. It also includes a container registry vulnerability scanner that collects vulnerability data

    Go
    View on GitHub↗5,210
  • busser/tftreebusser avatar

    busser/tftree

    158View on GitHub↗

    Display your Terraform module call stack in your terminal

    Go
    View on GitHub↗158
  • chanzuckerberg/foggchanzuckerberg avatar

    chanzuckerberg/fogg

    306View on GitHub↗

    Manage Infrastructure as Code with less pain.

    Go
    View on GitHub↗306
  • aquasecurity/tfsecaquasecurity avatar

    aquasecurity/tfsec

    7,013View on GitHub↗

    tfsec is a static analysis tool and infrastructure as code linter designed to detect security misconfigurations and compliance violations in Terraform infrastructure code. It functions as a cloud security posture tool and policy enforcement engine that evaluates configurations against established security benchmarks. The tool provides multi-cloud security auditing for providers including AWS, Azure, Google Cloud, and Kubernetes, as well as specialized scanning for DigitalOcean, OpenStack, CloudStack, and GitHub configurations. It identifies insecure settings such as public access or unencrypt

    Go
    View on GitHub↗7,013