Skip to main content

Tool Information

FieldDetails
ToolKICS
CategoryInfrastructure-as-Code Security
LicenseApache License 2.0
Source Codehttps://github.com/Checkmarx/kics

KICS scans Infrastructure-as-Code (IaC) files to detect security vulnerabilities and compliance issues.


Dashboards Using This Tool

Dashboard
Code Scanning

Scanners Available

Infrastructure-as-Code Scanner

Detects security vulnerabilities and misconfigurations in IaC files including:

  • Terraform
  • Kubernetes manifests
  • Dockerfiles
  • Helm charts

The scanner identifies:

  • Security misconfigurations
  • Compliance violations
  • Insecure infrastructure definitions