Skip to main content
🔒

tfsec

Security scanner for Terraform code that catches misconfigurations early

Security
tfsec logo

tfsec

Security scanner for Terraform code that catches misconfigurations early

tfsec (now Trivy) is a fast, open-source security scanner for Terraform code that detects potential security misconfigurations and vulnerabilities in infrastructure definitions before they are deployed. It checks for common Terraform anti-patterns like unrestricted security group rules, publicly exposed S3 buckets, unencrypted RDS instances, and missing logging configurations. tfsec integrates into git pre-commit hooks and CI pipelines to enforce infrastructure security standards.

Key Features

  • Terraform scanning
  • Misconfig detection
  • Pre-commit integration
  • CI/CD support
  • Custom checks
  • JSON/SARIF output
#terraform#iac-security#open-source#devsecops#cloud

Get Started

Visit tfsec
🟢
Free
Completely free to use

Quick Info

Category
Security
Pricing
Free

More Security Tools