Files
TechradarDev/radar/2021-01-01/checkov.md
Jan Bechtel 3c96125728 Add checkov
Signed-off-by: Jan Bechtel <jan.bechtel@omnevo.net>
2021-06-28 11:25:27 +02:00

468 B

title, ring, quadrant
title ring quadrant
Checkov assess platforms-and-aoe-services

Checkov is a static code analysis tool for infrastructure-as-code.

It scans cloud infrastructure provisioned using Terraform, Terraform plan, Cloudformation, Kubernetes, Dockerfile, Serverless or ARM Templates and detects security and compliance misconfigurations using graph-based scanning.

At AOE we use checkov in CI/CD processes to get insights into our Terraform-Modules.