NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
PyPI · #1943 most downloaded on PyPI
Infrastructure as code static analysis
Last release 3 days ago
01 Oct 2026
Ships fairly regularly
a new release about every 2 weeks
Most releases are documented
notes for 49 of the last 60 stable releases
1 version withdrawn
withdrawn after publishing
7 years old
3768 releases · first in 2019
Nothing published for this version
Nothing published for this version
Nothing published for this version
terraform: find explicit lockout fail actions for s3 - #5943
One column per quarter.
sca: persist support logs for sub processes - #5988
### Bug Fix - sast: summarize errors - #5977
terraform: and cdk/cloudformation: inconsistent naming of AWS resources in checks - #5966
Nothing published for this version
Nothing published for this version
terraform: Manually fixed test for loading terraform registry to be with commit hash instead of version tag - #5971
sast: replaced TBD with owasp and removed "sast engine" - #5959
Nothing published for this version
sast: Add policies to executable - #5955
sast: change the path for taint mode match - #5953
Nothing published for this version
Nothing published for this version
sast: Fix serialize for sast report with taint mode - #5949
Nothing published for this version
general: allow colorama version >=0.4.3,<0.5.0 in setup - #5944
sast: fix relative paths in sast cdk reports - #5932
Nothing published for this version
Nothing published for this version
general: fix multiprocess abilities - #5887
Nothing published for this version
terraform: Support "pass_prefix_list" for SG ingress rules correctly - #5918
general: temporary disable runtime config - #5921
terraform: node pools should be configured separately from a cl… - #5916
Nothing published for this version
- no noteworthy changes
sast: Add sast metadata to sast report - #5910
Nothing published for this version
Nothing published for this version
Nothing published for this version
terraform: CLI output - add indication if repository was discovered In a running environment - #5908
Nothing published for this version
sast: add dataflow to checkov report from sast - #5892
terraform: add CKV2_AZURE_47, ensure storage account is configured without blob anonymous access - #5888
sast: Split sast and cdk reports - #5889
Nothing published for this version
terraform_plan: Add PY graph checks for tf plan - #5875
Nothing published for this version
sast: add integration test platform report - #5856
Nothing published for this version
Nothing published for this version
Nothing published for this version
terraform: Used parallel run to run all split_graph iterations - #5840
general: anchor cyclonedx to last non breaking version - #5846
Nothing published for this version
Nothing published for this version
Nothing published for this version
terraform: fix for check VPCPeeringRouteTableOverlyPermissive and add tests - #5837
Nothing published for this version
secrets: used 10 characters in secret violation - #5835
general: check both path types for suppression - #5834
Nothing published for this version
sca: Update the log level of specific logs - #5828
Nothing published for this version
Nothing published for this version
ansible: add CKV_PAN_17 - Check for src and dst zone any - #5803
general: handle the updated on prem response from the platform - #5809
Your coding agent can read these notes before it upgrades. Set up the MCP server →