← All projects

TFGaurd

Your trusted Terraform security scanner for zero-trust infrastructure.

Securityterraformiac-securitystatic-analysisdevsecopsclicloud-securityinfrastructure-as-code
TFGaurd screenshot

About

TFGaurd is a static analysis CLI tool that scans Terraform (HCL) files for security misconfigurations and compliance violations across AWS, Azure, GCP, and Oracle Cloud. It runs entirely locally, meaning source code never leaves the user's machine, and ships with 1,200+ security rules available for free. An optional dashboard account enables scan history tracking, CI/CD token generation, and team workspaces.

Problem

Terraform configurations often contain security misconfigurations and compliance violations that are not caught until after deployment.

For

developers and DevOps engineers managing cloud infrastructure with Terraform

How it works

Users install a lightweight CLI via pip, run a single scan command locally against their Terraform files, and receive severity-ranked findings based on 1,200+ security rules without sending code to any external server.

Business model

freemium

Status

launched

Similar projects