Skip to content
| Marketplace
Sign in
Visual Studio Code>Other>Zscaler IaC ScanNew to Visual Studio Code? Get it now.
Zscaler IaC Scan

Zscaler IaC Scan

Zscaler

|
861 installs
| (1) | Free
Find and fix misconfigurations in infrastructure-as-code manifests like Terraform using static infrastructure as code analysis.
Installation
Launch VS Code Quick Open (Ctrl+P), paste the following command, and press enter.
Copied to clipboard
More Info

Zscaler IAC Scan VSCode

Zscaler IaC Scan Extension for Visual Studio Code

The Zscaler Infrastructure-as-Code (IaC) Scan extension in Visual Studio Code enables developers to identify security misconfigurations in their IaC templates. Developers can scan their IaC templates within Visual Studio Code IDE. The Zscaler IaC Scan extension supports scanning individual IaC files and directories in the workspace.

Features

  • Scans IaC templates with built-in policies for Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP) and Kubernetes resources.
  • Supports creating exemptions for policies within a template.
  • Highlights policy violations with severity for failed resources.

For extension support, contact Zscaler at cspm-support@zscaler.com


Setting Up the Login Flow for Zscaler IaC Scan

  1. After successful installation of the extension, a Zscaler icon will appear within the Visual Studio Code IDE’s navigation menu on the left. Click on the Zscaler icon and the Sign In button appears. SignUp Step 1

    a. Click Sign In Click SignIn

    b. Access the Zscaler Iac Scan’s login command by pressing (cmd/CTRL + SHIFT + P) and search for "Zscaler IaC Scan: Login".

    c. Select US Region Select Region

  2. After selecting the region, enter the email address for the ZPC portal. This is the same address used to log into the ZPC Web Portal. Select Region

  3. You are redirected to the Zscaler login page within a browser. Log in using your ZPC Credentials. Browser Redirection

  4. After successful login, you are redirected back to Visual Studio Code IDE where you must complete the login flow setup:

    a. In the dialog window that appears, click Open Visual Studio Code.

    Browser Redirection Back

    b. On the Visual Studio Code IDE window, in the dialog window that appears, click Open.

    VsCode Redirection Back

    You see the ZCP email address at the bottom of the window.

    VsCode Redirection Back


Accessing Zscaler IaC Scan Commands

Zscaler IaC Scan extension provides a set of commands. Press CTRL + SHIFT + P on Windows or CMD + SHIFT + P on macOS, then enter "Zscaler IaC Scan" to search for and access the commands.

Commands

  • Zscaler IaC Scan: Clear IaC Diagnostics Results - Clears all problems and warnings generated by the extension for the IaC resources.
  • Zscaler IaC Scan: Install/Update - Installs or updates the Zscaler IaC binary, which is used by the extension to run the IaC scans.
  • Zscaler IaC Scan: Logout - This command becomes available after you have successfully logged in.
  • Zscaler IaC Scan: Scan Complete Workspace - Scans all IaC files in the current Visual Studio Code workspace.
  • Zscaler IaC Scan: Scan File - Scans the currently opened file in the Visual Studio Code IDE editor. Scan File is also triggered automatically when you save the file.
  • Zscaler IaC Scan: Settings - Opens the Settings page.

Viewing Policy Violations

After running the scan on the workspace and files, policy violations are displayed in the PROBLEMS tab of the Visual Studio Code IDE window.

  • Contact us
  • Jobs
  • Privacy
  • Manage cookies
  • Terms of use
  • Trademarks
© 2025 Microsoft