
Checkov is a policy-as-code tool that scans cloud infrastructure configurations to detect misconfigurations before deployment.
Checkov scans infrastructure as code files across multiple platforms like Terraform, CloudFormation, Kubernetes, and more to identify misconfigurations. It supports attribute-based and graph-based policies, integrates with CI/CD workflows, and allows custom policy creation.
Scans infrastructure as code configurations across Terraform, CloudFormation, Kubernetes, Helm, ARM Templates, Serverless framework, and AWS CDK.
Uses Python-based policy-as-code framework to scan cloud resources for misconfigured attributes during build time.
Analyzes relationships between cloud resources with graph-based YAML policies to detect complex misconfigurations.
Integrates with CI/CD pipelines such as Jenkins, GitHub Actions, GitLab CI, and Bitbucket Pipelines to scan IaC files during automated builds.
Allows users to create and contribute custom policies using Python or YAML to tailor security checks to specific needs.
Enables executing, testing, and modifying runner parameters interactively in the terminal within the context of a repository.
Includes scanning capabilities to detect exposed credentials and secrets within infrastructure code.
Supports embedding into existing developer workflows and extending support for custom platforms, build processes, and release systems.
Download and install checkov via package managers like pip or use prebuilt binaries.
Run checkov CLI commands to scan repositories, folders, or individual IaC files for misconfigurations.
Examine the output for detected misconfigurations, vulnerabilities, and policy violations.
Add checkov scanning commands into your CI/CD pipeline scripts to automate security checks on every build.
Develop custom Python or YAML policies to enforce organization-specific security requirements.
Pricing details are gathered from the official Checkov website and are provided for reference only. Always confirm the latest information directly with the vendor.
| Plan | Price | Highlights |
|---|---|---|
| Free | 0 | Open source access to all scanning features
|
| Enterprise | Contact Sales | Dedicated support and SLAs
|
Explore tools grouped by use case so you can keep researching without losing momentum.
Compare other vetted products our editors see buyers evaluate alongside Checkov.