Skip to content

security MegaLinter Flavor

Docker Image Size (tag) Docker Pulls

Description

Optimized for security

Usage

  • GitHub Action: oxsecurity/megalinter/flavors/security@v6
  • Docker image: oxsecurity/megalinter-security:v6
  • mega-linter-runner: mega-linter-runner --flavor security

Embedded linters

Languages

Language Linter Configuration key Additional
BASH bash-exec BASH_EXEC
shellcheck BASH_SHELLCHECK GitHub stars
bandit PYTHON_BANDIT GitHub stars sarif

Formats

Format Linter Configuration key Additional

Tooling formats

Tooling format Linter Configuration key Additional
ANSIBLE ansible-lint ANSIBLE_ANSIBLE_LINT GitHub stars
CLOUDFORMATION cfn-lint CLOUDFORMATION_CFN_LINT GitHub stars sarif
DOCKERFILE hadolint DOCKERFILE_HADOLINT GitHub stars sarif
KUBERNETES kubeval KUBERNETES_KUBEVAL GitHub stars
kubeconform KUBERNETES_KUBECONFORM GitHub stars
TERRAFORM tflint TERRAFORM_TFLINT GitHub stars sarif
terrascan TERRAFORM_TERRASCAN GitHub stars sarif
terragrunt TERRAFORM_TERRAGRUNT GitHub stars autofix
checkov TERRAFORM_CHECKOV GitHub stars sarif
kics TERRAFORM_KICS GitHub stars

Other

Code quality checker Linter Configuration key Additional
REPOSITORY checkov REPOSITORY_CHECKOV GitHub stars sarif
devskim REPOSITORY_DEVSKIM GitHub stars sarif
dustilock REPOSITORY_DUSTILOCK GitHub stars sarif
gitleaks REPOSITORY_GITLEAKS GitHub stars sarif
secretlint REPOSITORY_SECRETLINT GitHub stars sarif
semgrep REPOSITORY_SEMGREP GitHub stars sarif
syft REPOSITORY_SYFT GitHub stars sarif
trivy REPOSITORY_TRIVY GitHub stars sarif