ended6월 16일· 1 sources
GitHub-Native Terraform Security: Catching Infrastructure Vulnerabilities at PR Time
GitHub PR에서 즉시 검증하는 Terraform 보안 스캐너
Why it matters
This GitHub App solves the critical problem of security findings being ignored when they live only in CI pipelines—by bringing infrastructure scanning directly into developers' PRs. TerraWatch detects vulnerabilities like public S3 buckets and IAM wildcards inline, provides hardcoded code fixes, and blocks merges until issues are resolved, making secure-by-default practices a natural part of the development workflow. The lightweight, dependency-free approach with just 2 minutes of setup enables teams to shift infrastructure security left in a way they'll actually adopt.
1
Sources
+0
24h
—
Growth
4d
Active
Terraform securityGitHub AppInfrastructure CodeAWS vulnerabilitiesTerraWatch