1
0
Fork 0
mirror of https://github.com/tldr-pages/tldr.git synced 2025-04-23 04:02:09 +02:00
tldr/pages/common/checkov.md
Fazle Arefin e93ab7d679
checkov: add page (#12402)
* checkov: add page

---------

Co-authored-by: Juri Dispan <juri.dispan@posteo.net>
2024-03-02 22:53:55 +05:30

559 B

checkov

Checkov is a static code analysis tool for Infrastructure as Code (IaC). It is also a software composition analysis (SCA) tool for images and open source packages. More information: https://www.checkov.io/1.Welcome/Quick%20Start.html.

  • Scan a directory containing IaC (Terraform, Cloudformation, ARM, Ansible, Bicep, Dockerfile, etc):

checkov --directory {{path/to/directory}}

  • Scan an IaC file, omitting code blocks in the output:

checkov --compact --file {{path/to/file}}

  • List all checks for all IaC types:

checkov --list