checkov #20
Merged
checkov #20
Annotations
11 errors
sarif file
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|
setup checkov:
modules/codebuild/main.tf#L4
CKV_AWS_147: "Ensure that CodeBuild projects are encrypted using CMK"
|
setup checkov:
modules/codebuild/main.tf#L4
CKV_AWS_147: "Ensure that CodeBuild projects are encrypted using CMK"
|
setup checkov:
s3.tf#L58
CKV_AWS_300: "Ensure S3 lifecycle configuration sets period for aborting failed uploads"
|
setup checkov:
modules/codebuild/main.tf#L4
CKV_AWS_147: "Ensure that CodeBuild projects are encrypted using CMK"
|
setup checkov:
modules/codebuild/main.tf#L4
CKV_AWS_147: "Ensure that CodeBuild projects are encrypted using CMK"
|
setup checkov:
modules/codebuild/main.tf#L4
CKV_AWS_147: "Ensure that CodeBuild projects are encrypted using CMK"
|
setup checkov:
codepipeline.tf#L4
CKV_AWS_219: "Ensure CodePipeline Artifact store is using a KMS CMK"
|
setup checkov:
codebuild.tf#L219
CKV_AWS_338: "Ensure CloudWatch log groups retains logs for at least 1 year"
|
setup checkov:
codebuild.tf#L103
CKV_AWS_356: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
setup checkov:
codebuild.tf#L103
CKV_AWS_111: "Ensure IAM policies does not allow write access without constraints"
|
Loading