Showing 20 of 20 projects
A rules engine for cloud security, cost optimization, and governance using YAML policies to query, filter, and act on cloud resources.
A real-time administration layer for policy engines like OPA and AWS Cedar, keeping authorization data and policies in sync across microservices.
A static code analyzer that detects security and compliance violations in Infrastructure as Code before provisioning cloud infrastructure.
An open-core, language-agnostic authorization solution for implementing and managing context-aware access control policies.
Write tests against structured configuration data using the Open Policy Agent Rego query language.
A constraint-based record and functional language for writing, validating, and managing complex configurations, especially in cloud-native scenarios.
A lightweight, security-focused BDD test framework for Terraform that enables compliance and negative testing for infrastructure-as-code.
An open-source policy-as-code tool that validates JSON/YAML data like CloudFormation and Kubernetes configs against custom rules.
An open-source authorization service providing fine-grained, policy-based access control for cloud-native applications and APIs.
A vulnerable-by-design Terraform repository for learning cloud security misconfigurations across AWS, Azure, and GCP.
A CLI tool for real-time malicious package detection and software supply chain security across multiple ecosystems.
Regula checks infrastructure as code templates for AWS, Azure, Google Cloud, and Kubernetes security and compliance using Open Policy Agent/Rego.
Open-source policy-as-code software for analyzing multi-cloud and SaaS environments using SQL, YAML, and natural language with GPT.
Tool and policy library for validating Google Kubernetes Engine clusters against configuration best practices and scalability limits.
A linter, debugger, and language server for Rego that identifies mistakes, enforces best practices, and enhances policy development.
IAMbic is version-control for IAM, centralizing and simplifying cloud access and permissions across AWS, Okta, Azure AD, and Google Workspace.
A Python package for defining and enforcing Policy as Code standards in Terraform configurations.
A realtime administration layer for Open Policy Agent (OPA) that pushes live policy and data updates to authorization agents.
A vulnerable-by-design CloudFormation template for learning and testing infrastructure-as-code security scanning tools.
A Go static analysis tool that uses AST and Rego policies for customizable code inspection.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.