KICS

Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

Stars
1.77K
Forks
277
Open issues
190
Closed issues
1.79K
Last release
6 months ago
Last commit
5 months ago
Watchers
1.77K
Total releases
72
Total commits
6.7K
Open PRs
82
Closed PRs
4.27K
Repo URL
Project Website
https://kics.io/
Platform
License
apache-2.0
Category
Offers premium version?
NO
Proprietary?
NO
About

Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

KICS stands for Keeping Infrastructure as Code Secure, it is open source and is a must-have for any cloud native project.

Supported Platforms

           

           

               

               

           

           

Beta Features

       

In order to run the Databricks and NIFCloud queries, use the --experimental-queries flag when running KICS.

Getting Started

Setting up and using KICS is super-easy.

Interested in more advanced stuff?

  • Deep dive into KICS queries.
  • Understand how to integrate KICS in your favourite CI/CD pipelines.

See KICS documentation for more details and topics.

How it Works

What makes KICS really powerful and popular is its built-in extensibility. This extensibility is achieved by:

  • Fully customizable and adjustable heuristics rules, called queries. These can be easily edited, extended and added.
  • Robust but yet simple architecture, which allows quick addition of support for new Infrastructure as Code solutions.

Contribution

KICS is a true community project. It's built as an open source from day one, and anyone can find his own way to contribute to the project. Check out how, within just minutes, you can start making a difference, by sharing your expertise with a community of thousands of security experts and software developers.

You're welcome to join our monthly community meetings, talk with us on GitHub discussions or contact KICS core team at kics@checkmarx.com.

Meet us at conferences

Keeping Infrastructure as Code Secure!

© 2023 Checkmarx Ltd. All Rights Reserved.

Alternative Projects

Subscribe to Open Source Businees Newsletter

Twice a month we will interview people behind open source businesses. We will talk about how they are building a business on top of open source projects.

We'll never share your email with anyone else.