tf-nag: offline AWS Solutions checks for Terraform plans
tf-nag is an offline Python CLI that checks Terraform plan or state JSON Rule IDs and severity levels are derived from the upstream AWS Solutions pack: https://github.com/cdklabs/cdk-nag. tf-nag is published on PyPI: https://pypi.org/project/tf-nag/. Install it with pip: pip install tf-nag tf-nag --version Or run it without installing, using uvx: uvx tf-nag --version To pin a specific release in a pipeline: pip install tf-nag==0.1.0 To work on tf-nag itself, clone the repository and install its development uv: git clone git@github.com:vumdao/terraform-nag.git cd terraform-nag uv sync --group d
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in