checkov

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

APACHE-2.0 License

Downloads
4.3M
Stars
6.8K
Committers
400

Bot releases are visible (Hide)

checkov - 2.1.223

Published by github-actions[bot] about 2 years ago

Feature

  • general: Improve ComplexSolver run time - #3548
  • kubernetes: create complex k8s vertices - #3549

Bug Fix

  • general: only add helpUri to SARIF if it is non-empty - #3542
  • kubernetes: [CKV_K8S_140] Update ApiServerTlsCertAndKey.py to check RHS values - #3506
  • kubernetes: [CKV_K8S_90] Remove unnecessary condition check from ApiServerProfiling.py - #3541
checkov - 2.1.219

Published by github-actions[bot] about 2 years ago

Feature

  • cloudformation: add CKV_AWS_197 for CFN - #3536
  • sca: Split PRESENT_CACHED_RESULTS env var to 2 feature flag like vars - #3518

Bug Fix

  • general: handle fixes for cloned OOTB policies - #3535
  • helm: fix helm signal abort handler - #3539
  • terraform: APIGatewayAuthorization check missing authorization - #3545
  • terraform: fix tfvars rendering - #3533
checkov - 2.1.214

Published by github-actions[bot] about 2 years ago

Feature

  • general: leverage SARIF helpUri for guideline and SCA link - #3492
  • github: Improving GHA schema validation - #3513
  • kubernetes: added base class K8SEdgeBuilder - #3530
  • terraform: GCP Cloud functions should not be public - #3477

Bug Fix

  • github: add missing schema files to distribution package - #3537
  • sca: changes on cve suppressions to match package and image scan - #3502
  • sca: send exception log when exceeded retries - #3534
  • terraform: make test case insensitive for CKV_ALI_35,CKV_ALI_36,CKV_ALI_37 - #3507
  • terraform: do not evaluate OCI policy statements - #3411
checkov - 2.1.212

Published by github-actions[bot] about 2 years ago

Bug Fix

  • helm: helm add timeout to dependencies command - #3525
  • helm: Helm fix logs - #3524
checkov - 2.1.210

Published by github-actions[bot] about 2 years ago

Feature

  • sca: add Image Referencer for CloudFormation - #3501

Bug Fix

  • helm: add try catch to helm cmd run - #3508

Platform

  • general: upload run metadata to S3 - #3461
checkov - 2.1.207

Published by github-actions[bot] about 2 years ago

Feature

  • general: fix format of cli command reference table - #3504

Bug Fix

  • sca: skip old CVE suppressions (without 'accountIds') - #3503
checkov - 2.1.205

Published by github-actions[bot] about 2 years ago

Feature

  • general: add flag for summary position - #3497
checkov - 2.1.204

Published by github-actions[bot] about 2 years ago

Feature

  • sca: licenses suppressions by type - #3491

Bug Fix

  • arm: unexpected data type in ACRAnonymousPullDisabled - #3496
  • general: remove duplicated reports - #3495
checkov - 2.1.201

Published by github-actions[bot] about 2 years ago

Feature

  • general: intersects/not_intersects operators (solvers) - #3482

Bug Fix

  • gha: Gracefully handle bad GHA job definitions - #3489
  • sca: do not skip the scan if BC_LIC is used with --check - #3488
checkov - 2.1.196

Published by github-actions[bot] about 2 years ago

Bug Fix

  • kubernetes: Validate k8s spec type - #3483
  • terraform: removed duplicate check CKV_ALI_34 - #3467
checkov - 2.1.193

Published by github-actions[bot] about 2 years ago

  • no noteworthy changes
checkov - 2.1.192

Published by github-actions[bot] about 2 years ago

Bug Fix

  • cloudformation: fix bug in cfn parser - #3473

Platform

  • sca: Add images data to image_cached_results for ImageReferencer scan - #3468
  • secrets: modify checkov secrets scanner to scan all files based on ff - #3474
checkov - 2.1.188

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

checkov - 2.1.184

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

checkov - 2.1.182

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

checkov - 2.1.179

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

checkov - 2.1.176

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

checkov - 2.1.171

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

checkov - 2.1.165

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

checkov - 2.1.162

Published by github-actions[bot] about 2 years ago

minor improvements and fixes

Package Rankings
Top 9.86% on Proxy.golang.org
Top 0.86% on Pypi.org
Badges
Extracted from project README
checkov Maintained by Prisma Cloud build status security status code_coverage docs PyPI Python Version Terraform Version Downloads Docker Pulls slack-community Open in Gitpod