Cloudrail Visual Studio Code ExtensionCloudrail is an infrastructure as code scanning tool that scans your terraform code for security vulnerabilities and best practices. Getting StartedTo get started with the Cloudrail Visual Studio Code extension, first make sure you've set up your Cloudrail account. It's a quick and free process, with instructions found here on how to do it. Once your account has been setup, follow these instructions:
Running A ScanTo run a simple static scan, choose the Using A Custom PolicyTo apply custom rules with a custom policy, add the policy ID to the Cloudrail Settings tab. Available CommandsThe following commands are available from the command palette.
NotesSupported languagesTerraform Determining Scan DirectoryThe Cloudrail extension will attempt to determine the correct directory to scan based on the current file open in your editor. If you have Cloudrail in a NutshellDiscover, Detect, and ControlYour cloud infrastructure is built, managed, and deployed using automation. Your security framework should discover potentially new infrastructure, detect security issues, and allow you to control what gets deployed. Policy-as-CodeYour policy requirements should not be stuck in spreadsheets. Empower your team with continuous security attestation. Cloud Security the DevOps WayFixing cloud security after deployment is time consuming and requires a lot of effort. Detect cloud security issues early in the development process. Treat security violations as simple code fixes. FeedbackHave feedback? Send us an email at community@cloudrail.app |