{"repo":"bridgecrewio/checkov-action","free":true,"listed":false,"github":"https://github.com/bridgecrewio/checkov-action","clone":"git clone https://github.com/bridgecrewio/checkov-action.git","description":"This GitHub Action runs Checkov against infrastructure-as-code, open source packages, container images, and CI/CD configurations to identify misconfigurations, vulnerabilities, and license compliance issues.","language":"HCL","stars":313,"topics":["marketplace","hacktoberfest","devsecops","terraform","compliance","security","scanning","static-analysis","bridgecrew"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"Checkov GitHub action This GitHub Action runs Checkov against infrastructure-as-code, open source packages, container images, and CI/CD configurations to identify misconfigurations, vulnerabilities, and license compliance issues. Example usage for IaC and SCA Example usage for options/environment variables in 'with' block Example usage for container images Note that this example uses the latest version ( master ) but you could also use a static version (e.g. v3 ). Also, the check ids specified for '--check' and '--skip-check' must be mutually exclusive. Example usage for private Terraform modules To give checkov the possibility to download private GitHub modules you need to pass a valid GitHub PAT with the needed permissions.","default_branch":null,"files":null,"tree":[],"storefront":"/r/bridgecrewio","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/bridgecrewio/checkov-action/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}