Iac Checkov · AgentSecOps/SecOpsAgentKit

Scan infrastructure-as-code for security misconfigurations

Runs Checkov against Terraform, CloudFormation, Kubernetes, Dockerfile, and ARM templates to flag security misconfigurations, exposed secrets, and compliance gaps against benchmarks like CIS, PCI-DSS, HIPAA, and SOC2, with remediation guidance.

Good for

  • Scan Terraform code before deployment
  • Check Kubernetes manifests against CIS benchmarks
  • Find hardcoded secrets in IaC files
Category
Coding

Open-source skills are maintained by their authors and listed as published, with attribution. Results depend on how well the skill fits your task and material.

A good place to start

Run a Checkov scan on my Terraform directory and summarize any HIPAA compliance violations.

Make your next great thing.

Bring a question, a file, or an idea that’s not quite there yet.