<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Checkov doesn't natively support TerraGrunt in Prisma Cloud Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-doesn-t-natively-support-terragrunt/m-p/564325#M1090</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We had issues with secret scanning output in checkov (see&amp;nbsp;&lt;A href="https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-secrets-framework-scanning-exposes-secrets-in-junit-test/td-p/564324" target="_blank"&gt;https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-secrets-framework-scanning-exposes-secrets-in-junit-test/td-p/564324&lt;/A&gt;&amp;nbsp;)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, if checkov natively supported TerraGrunt, then we wouldn't need to output the terraform plan to a file for checkov to be able to scan it, and therefore the secrets would not be visible if they are protected via a Sensitive flag.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We raised a feature request (See here - &lt;A href="https://prismacloud.ideas.aha.io/ideas/PANW-I-5556" target="_blank" rel="noopener"&gt;Checkov should support | Prisma Cloud New Features Request Portal (aha.io)&lt;/A&gt;).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, as votes are normalised by customer, 1 vote from us vs 100 votes from us is still 1 vote - so if you also think that our enhancement request should be prioritised, please upvote the above linked Feature Request.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Graham&lt;/P&gt;</description>
    <pubDate>Mon, 06 Nov 2023 10:53:55 GMT</pubDate>
    <dc:creator>GrahamGoldENG</dc:creator>
    <dc:date>2023-11-06T10:53:55Z</dc:date>
    <item>
      <title>Checkov doesn't natively support TerraGrunt</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-doesn-t-natively-support-terragrunt/m-p/564325#M1090</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We had issues with secret scanning output in checkov (see&amp;nbsp;&lt;A href="https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-secrets-framework-scanning-exposes-secrets-in-junit-test/td-p/564324" target="_blank"&gt;https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-secrets-framework-scanning-exposes-secrets-in-junit-test/td-p/564324&lt;/A&gt;&amp;nbsp;)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, if checkov natively supported TerraGrunt, then we wouldn't need to output the terraform plan to a file for checkov to be able to scan it, and therefore the secrets would not be visible if they are protected via a Sensitive flag.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We raised a feature request (See here - &lt;A href="https://prismacloud.ideas.aha.io/ideas/PANW-I-5556" target="_blank" rel="noopener"&gt;Checkov should support | Prisma Cloud New Features Request Portal (aha.io)&lt;/A&gt;).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, as votes are normalised by customer, 1 vote from us vs 100 votes from us is still 1 vote - so if you also think that our enhancement request should be prioritised, please upvote the above linked Feature Request.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Graham&lt;/P&gt;</description>
      <pubDate>Mon, 06 Nov 2023 10:53:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-doesn-t-natively-support-terragrunt/m-p/564325#M1090</guid>
      <dc:creator>GrahamGoldENG</dc:creator>
      <dc:date>2023-11-06T10:53:55Z</dc:date>
    </item>
    <item>
      <title>Re: Checkov doesn't natively support TerraGrunt</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-doesn-t-natively-support-terragrunt/m-p/564725#M1096</link>
      <description>&lt;P&gt;&lt;BR /&gt;Hi &lt;A href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/326659" target="_blank"&gt;&lt;SPAN style="color:var(--ck-color-mention-text);"&gt;&lt;U&gt;@GrahamGoldENG&lt;/U&gt;&lt;/SPAN&gt;&lt;/A&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would also recommend posting to the General Topics area. This could increase visibility with a wider range of users. Another avenue you can use if posting to the &lt;A href="https://www.reddit.com/r/paloaltonetworks/" target="_blank"&gt;Palo Alto Networks Reddit&lt;/A&gt;. This isn't officially owned by Palo Alto, but there is great engagement and visibility there.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Nov 2023 04:35:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/checkov-doesn-t-natively-support-terragrunt/m-p/564725#M1096</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2023-11-08T04:35:46Z</dc:date>
    </item>
  </channel>
</rss>

