Auditing Terraform Infrastructure For Security

mukul975/auditing-terraform-infrastructure-for-security · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Audit Terraform infrastructure-as-code for security misconfigurations using Checkov, tfsec, Terrascan, and OPA/Rego policies to detect overly permissive IAM policies, public resource exposure, missing encryption, and insecure defaults before cloud deployment.

SKILL.md

Files

This skill is a package of 4 files. Install with the command above, or download the folder.

  • 📄SKILL.md entry
  • 📁references
  • 📄api-reference.md 1.8 KB
  • 📁scripts
  • ⚙️agent.py 7.0 KB
  • 📄LICENSE 11.0 KB

Related

  1. Implementing Infrastructure As Code Security Scanning · mukul975 bundle
    Automates security scanning for Infrastructure as Code templates using Checkov, tfsec, and KICS to detect misconfigurations before deployment.
    24.6k
    repo stars
  2. Managing Opa · cloudthinker-ai
    Manage and inspect OPA policies, Gatekeeper constraints, and Rego rules, including discovery, testing, and audit analysis.
    7
    repo stars
  3. Infrastructure Drift Detection · snoodleboot-io
    Detect and triage infrastructure drift by comparing declared Terraform state against live cloud resources using scheduled pipelines and audit logs.
    2
    repo stars
  4. Checkov Iac Scanner · agentskillexchange
    Scans infrastructure-as-code files for security and compliance misconfigurations using Checkov, with support for Terraform, Kubernetes, and other formats.
    28
    repo stars
  5. Implementing Policy As Code With Open Policy Agent · mukul975 bundle
    Enforce organizational security policies across Kubernetes clusters and CI/CD pipelines using Open Policy Agent (OPA) and Gatekeeper, including writing Rego policies, deploying admission controllers, and testing policies locally.
    24.6k
    repo stars
  6. AWS Well Architected Review · github
    Reviews AWS infrastructure as code and deployed resources against the Well-Architected Framework, generating findings and GitHub issues for remediation.
    36.2k
    repo stars

Frequently asked questions

How do I install the Auditing Terraform Infrastructure For Security skill?

Run npx skillmds add mukul975/auditing-terraform-infrastructure-for-security in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the Auditing Terraform Infrastructure For Security skill do?

Audit Terraform infrastructure-as-code for security misconfigurations using Checkov, tfsec, Terrascan, and OPA/Rego policies to detect overly permissive IAM policies, public resource exposure, missing encryption, and insecure defaults before cloud deployment. It is listed under DevOps & Infra, Security, Infrastructure as Code, Secure Coding, Vulnerability Scanning on SkillMD.

Is Auditing Terraform Infrastructure For Security safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts, reads secrets. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with Auditing Terraform Infrastructure For Security?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is Auditing Terraform Infrastructure For Security free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published Auditing Terraform Infrastructure For Security?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.