-
Fugue's cloud security posture management (CSPM) engine — built around one policy model across the entire cloud development lifecycle — is now part of the Snyk platform.
-
Rapid7's cloud-native application protection platform (CNAPP) that drives continuous security and compliance, including IaC scanning, across multi-cloud environments.
-
A free, open-source static analysis tool that scans Terraform, CloudFormation, Kubernetes, Helm, ARM templates, and Serverless configs for misconfigurations before deployment.
-
A pluggable Terraform linter that catches possible errors — like invalid instance types — across AWS, Azure, and GCP, plus deprecated syntax and naming-convention issues.
-
Accurics' self-healing infrastructure-as-code security capability now lives inside Tenable One's CNAPP, codifying security checks throughout the development lifecycle.
-
CloudSploit's configuration-scanning engine is now Aqua Security's real-time Cloud Security Posture Management product, detecting risks across AWS, Azure, GCP, and Oracle Cloud.
-
Helps developers find and fix misconfigurations in Terraform, CloudFormation, Kubernetes, Helm, and ARM templates directly inside IDE, CLI, SCM, and CI/CD workflows.
-
Context-aware infrastructure-as-code security reviews with continuous compliance and drift detection — now run as an independent product after Indeni's acquisition by BlueCat.
-
Now part of Palo Alto Networks' Prisma Cloud, Bridgecrew (powered by Checkov) enforces cloud security earlier in the development lifecycle to minimize risk and maintain compliance.