prowler
https://github.com/prowler-cloud/prowler
Python
Prowler is the Open Cloud Security platform for AWS, Azure, GCP, Kubernetes, M365 and more. It helps for continuous monitoring, security assessments & audits, incident response, compliance, hardening and forensics readiness. Includes CIS, NIST 800, NIST C
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Python not yet supported1 Subscribers
Add a CodeTriage badge to prowler
Help out
- Issues
- [New Check]: SageMaker Clarify processing jobs exist
- [New Check]: SageMaker model monitoring schedules are active
- [New Check]: SageMaker Model Registry has approved model packages
- [New Check]: Conditional Access groups must be protected by RMAU or role-assignable groups
- [New Check]: Conditional Access excluded objects must be covered by another policy (no exclusion gaps)
- [New Check]: Conditional Access policies must not reference deleted users, groups, or roles
- [New Check]: Application registrations should not use password credentials (client secrets)
- [New Check]: Apps with Exchange mailbox permissions must be scoped via Application Access Policy
- [New Check]: At least one Conditional Access policy must explicitly target Azure DevOps
- [New Check]: Microsoft Entra directory sync must block object takeover (soft- and hard-matching)
- Docs
- Python not yet supported