{"owner":"bridgecrewio","github":"https://github.com/bridgecrewio","claimed":false,"inventory":[],"indexed":[{"repo":"bridgecrewio/checkov","github":"https://github.com/bridgecrewio/checkov","description":"Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.","language":"Python","stars":8949,"topics":["terraform","static-analysis","aws","gcp","azure","aws-security","cloudformation","scans","compliance","kubernetes"],"license":"Apache-2.0","category":"deployment-docker-iac"},{"repo":"bridgecrewio/terragoat","github":"https://github.com/bridgecrewio/terragoat","description":"TerraGoat is Bridgecrew's \"Vulnerable by Design\" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.","language":"HCL","stars":1305,"topics":["terraform","aws-security","cloud-security","goat","azure-security","gcp-security","devsecops"],"license":"Apache-2.0","category":"deployment-docker-iac"},{"repo":"bridgecrewio/yor","github":"https://github.com/bridgecrewio/yor","description":"Extensible auto-tagger for your IaC files. The ultimate way to link entities in the cloud back to the codified resource which created it.","language":"Go","stars":932,"topics":["iac","terraform","devops","cloud","cloudsecurity","cloudformation","serverless","tagging","infrastructure-as-code","hacktoberfest"],"license":"Apache-2.0","category":"deployment-docker-iac"},{"repo":"bridgecrewio/AirIAM","github":"https://github.com/bridgecrewio/AirIAM","description":"Least privilege AWS IAM Terraformer","language":"Python","stars":825,"topics":["bridgecrew","iam","privileges-model","aws","terraform","aws-iam","aws-security","aws-security-automation","hacktoberfest"],"license":"Apache-2.0","category":"deployment-docker-iac"},{"repo":"bridgecrewio/checkov-action","github":"https://github.com/bridgecrewio/checkov-action","description":"This GitHub Action runs Checkov against infrastructure-as-code, open source packages, container images, and CI/CD configurations to identify misconfigurations, vulnerabilities, and license compliance issues.","language":"HCL","stars":313,"topics":["marketplace","hacktoberfest","devsecops","terraform","compliance","security","scanning","static-analysis","bridgecrew"],"license":"Apache-2.0","category":"security-tools"},{"repo":"bridgecrewio/bridgecrew-action","github":"https://github.com/bridgecrewio/bridgecrew-action","description":"This GitHub Action runs Bridgecrew against infrastructure-as-code, open source packages, container images, and CI/CD configurations to identify misconfigurations, vulnerabilities, and license compliance issues.","language":null,"stars":73,"topics":["static-analysis","github","actions","github-actions","bridgecrew","marketplace","compliance","devsecops","scanning","security"],"license":"MIT","category":"security-tools"}],"how_to_buy":"GET /r/bridgecrewio/<repo> (Accept: application/json) for any listed repo here: tree, README, price and the checkout to pay (x402; rehearse first at its test twin, simulated money). Repos under 'indexed' are free: clone them from GitHub."}