kapitan-reference VS checkov

Compare kapitan-reference vs checkov and see what are their differences.

kapitan-reference

Reference structure for Kapitan - alpha version (by kapicorp)

checkov

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew. (by bridgecrewio)
Our great sponsors
  • Onboard AI - Learn any GitHub repo in 59 seconds
  • InfluxDB - Collect and Analyze Billions of Data Points in Real Time
  • SaaSHub - Software Alternatives and Reviews
kapitan-reference checkov
2 49
41 6,127
- 1.7%
0.0 9.9
2 months ago 7 days ago
Shell Python
- Apache License 2.0
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

kapitan-reference

Posts with mentions or reviews of kapitan-reference. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-01-19.

checkov

Posts with mentions or reviews of checkov. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-07-21.

What are some alternatives?

When comparing kapitan-reference and checkov you can also consider the following projects:

tfsec - Security scanner for your Terraform code [Moved to: https://github.com/aquasecurity/tfsec]

trivy - Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

tflint - A Pluggable Terraform Linter

OPA (Open Policy Agent) - Open Policy Agent (OPA) is an open source, general-purpose policy engine.

terrascan - Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

terraform-security-scan - Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec

kics - Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

cfn_nag - Linting tool for CloudFormation templates

terratest - Terratest is a Go library that makes it easier to write automated tests for your infrastructure code.

tfsec - Security scanner for your Terraform code

atlantis - Terraform Pull Request Automation

conftest - Write tests against structured configuration data using the Open Policy Agent Rego query language