Skip to content
#

iac-security

Here are 23 public repositories matching this topic...

awesome-security-pipeline

Practical, continuously verified open-source DevSecOps tools and a tested CI/CD security pipeline for GitHub Actions, covering SBOM, SAST, SCA, secrets, containers, and signing.

  • Updated Aug 23, 2026
  • Python

🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.

  • Updated Aug 17, 2026
  • Python

LLM-assisted IaC remediation for Terraform and Dockerfiles, combining Checkov and Trivy with parse validation, resource-drift protection, and verified rescans. Includes a CLI, Streamlit UI, evaluation harness, and GitHub Actions integration.

  • Updated Aug 9, 2026
  • Python

Terraform Sentinel AI is a local-first multi-agent platform that turns natural language infrastructure requests into secure, policy-aware Terraform using LangGraph, OpenRouter free-tier models, local vector retrieval, and Docker-based validation workflows.

  • Updated Mar 31, 2026
  • Python

AI-native unified cloud governance platform — multi-cloud discovery, 6R migration planning, IaC security, FinOps, compliance audit, and executive AI chat. Built on Claude Opus 4.7. EU AI Act Annex IV ready. Zero paid SaaS dependencies.

  • Updated Aug 4, 2026
  • Python

Improve this page

Add a description, image, and links to the iac-security topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the iac-security topic, visit your repo's landing page and select "manage topics."

Learn more