Repository navigation
cfn-guard
- Website
- Wikipedia
Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules. Take this survey to provide feedback about cfn-guard: https://amazonmr.au1.qualtrics.com/jfe/form/SV_bpyzpfoYGGuuUl0
Rules Registry for Compliance Frameworks
A collection of CloudFormation Guard 2.0 rules
GItHub Action for cfn-guard and aws-guard-rules-registry
The CloudFormation Resource Schema Guard Rail allows you to evaluate resource schema compliance against CloudFormation enforced best practices
This tool allows you to easily run your cfn-guard tests against your cfn-guard rules.
report2junit is a tool that converts various reports into the JUnit format.
overkill now that CloudFormation Guard Hooks exist: