About Bridgecrew by Prisma Cloud
Checkov home
Docs
Quick start
Overview
Integrations
Download
Try Bridgecrew
Docs
Quick start
Overview
Integrations
Checkov Documentation
1.Welcome
What is Checkov?
Terms and Concepts
Quick Start
Feature Descriptions
2.Basics
Installing Checkov
CLI Command Reference
Suppressing and Skipping Policies
Hard and soft fail
Scanning Credentials and Secrets
Reviewing Scan Results
Visualizing Checkov Output
Handling Variables
3.Custom Policies
Custom Policies Overview
Python Custom Policies
YAML Custom Policies
Custom YAML Policies Examples
Sharing Custom Policies
4.Integrations
Jenkins
Bitbucket Cloud Pipelines
Github Actions
GitLab CI
Kubernetes
Pre-Commit
Docker
5.Policy Index
all resource scans
arm resource scans
bicep resource scans
bitbucket_configuration resource scans
bitbucket_pipelines resource scans
cloudformation resource scans
dockerfile resource scans
github_actions resource scans
github_configuration resource scans
gitlab_ci resource scans (auto generated)
gitlab_configuration resource scans
kubernetes resource scans
openapi resource scans
secrets resource scans
serverless resource scans
terraform resource scans
6.Contribution
Checkov Runner Contribution Guide
Implementing ImageReferencer
Contribution Overview
Contribute Python-Based Policies
Contribute YAML-based Policies
Contribute New Terraform Provider
Contribute New Bitbucket configuration policy
Contribute New GitHub configuration policy
Contribute New Gitlab configuration policy
7.Scan Examples
Terraform Plan Scanning
Helm
Kustomize
AWS SAM configuration scanning
Azure ARM templates configuration scanning
Azure Bicep configuration scanning
Bitbucket configuration scanning
AWS CDK configuration scanning
Cloudformation configuration scanning
Dockerfile configuration scanning
GitHub configuration scanning
Gitlab configuration scanning
Kubernetes configuration scanning
OpenAPI configuration scanning
Serverless framework configuration scanning
8.Outputs
JUnit XML
9.Level up
Upgrade from Checkov to Bridgecrew
Docs
5.policy index
gitlab_ci resource scans
gitlab_ci resource scans (auto generated)
Id
Type
Entity
Policy
IaC
0
CKV_GITLABCI_1
jobs
*.script[]
Suspicious use of curl with CI environment variables in script
gitlab_ci
1
CKV_GITLABCI_2
jobs
*.rules
Avoid creating rules that generate double pipelines
gitlab_ci