iac-checkov

Official

Secure IaC across Terraform and more with Checkov.

AuthorAgentSecOps
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Infrastructure as Code (IaC) security scanning helps teams catch misconfigurations, policy violations, and secrets before deployment, reducing risk and speeding up compliance readiness.

Core Features & Use Cases

  • 750+ built-in policies across Terraform, CloudFormation, Kubernetes, Dockerfile, and ARM templates for automated assurance
  • Detects misconfigurations, drift, and secret leakage; supports policy-as-code in CI/CD pipelines with remediation guidance
  • Use cases include pre-deployment security validation, compliance alignment (CIS, PCI-DSS, HIPAA, SOC2), and audit-ready reporting

Quick Start

Install Checkov and run an IaC security scan against your infrastructure directory to identify misconfigurations and policy violations.

Dependency Matrix

Required Modules

checkov

Components

scriptsreferencesassets

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: iac-checkov
Download link: https://github.com/AgentSecOps/SecOpsAgentKit/archive/main.zip#iac-checkov

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.