Using your pipelines to harden your pipelines: The importance of CI/CD security for your software supply chain Idan Tendler September 1, 2022 Learn how to shift your CI/CD security left to proactively harden your pipelines against software supply chain attacks. Cloud security DevSecOps
How to enforce consistent code scanning rules across Checkov and Bridgecrew Mike Urbanski August 24, 2022August 23, 2022 Learn how to create customized and consistent code security scanning rules across the Bridgecrew platform and Checkov. Open source projects Product update
Keep your software supply chain secure with these new VCS policies Barak Schoster April 4, 2022July 24, 2022 To help organizations enforce supply chain security best practices, Checkov and Bridgecrew now scan GitHub, GitLab, and Bitbucket configurations. Product update
Prioritize, skip, and fail with policy severities in Checkov Mike Urbanski March 4, 2022July 29, 2022 Policy severities are now included in Checkov to help prioritize findings and make CI/CD skip and fail flags more manageable. Open source projects
New in Bridgecrew: YAML-based policy creator and composite custom policies Gilad Mark March 18, 2021 Our newest updates to our custom policy editor makes policy-as-code even more relevant, customizable, and shareable. Product update