César Arroba
|
15630f54d2
|
fix(aws): reuse the STS region that answered and add PROWLER_AWS_BOTO3_RETRIES_MAX_ATTEMPTS (#12870)
|
2026-09-24 10:24:44 +02:00 |
|
Pedro Martín
|
07d48ab15d
|
fix(huaweicloud): remove mock data from SMN service (#12836)
|
2026-09-18 09:20:35 +02:00 |
|
 
|
bbb297aee7
|
feat(providers/huaweicloud): add smn_topic_subscriptions check (#12186)
Co-authored-by: tomitobio <tomitobio@users.noreply.github.com>
Co-authored-by: Hugo P.Brito <hugopbrit@gmail.com>
|
2026-09-17 13:31:08 +02:00 |
|
Haitao Zheng
|
d0d29108e0
|
fix(sdk): report all-users 2sv override failures (#12700)
|
2026-09-17 13:19:11 +02:00 |
|
César Arroba
|
75c22df63b
|
fix(azure): use the selected cloud endpoints in Defender and Key Vault (#12813)
|
2026-09-16 09:25:08 +02:00 |
|
 César Arrobaandpedrooot
|
757cd44ecb
|
fix(aws): try the rest of the partition when the bootstrap region is unreachable (#12799)
Co-authored-by: pedrooot <pedromarting3@gmail.com>
|
2026-09-16 09:24:41 +02:00 |
|
Pedro Martín
|
61ef44a03b
|
fix(m365): skip defender preset policies without rules (#12809)
|
2026-09-15 09:56:50 +02:00 |
|
Pedro Martín
|
3860cd3dce
|
feat(compliance): FedRAMP 20x Class C FRR + AWS checks (#12808)
|
2026-09-14 16:35:05 +02:00 |
|
Pedro Martín
|
b378f15798
|
fix(aws): guard checks reading iam roles when unlisted (#12785)
|
2026-09-11 08:37:20 +02:00 |
|
 StylusFrostandpedrooot
|
f9c02da90a
|
feat(aws): support the ISO partitions for region resolution and scanning (#12759)
Co-authored-by: pedrooot <pedromarting3@gmail.com>
|
2026-09-10 17:15:13 +02:00 |
|
Pedro Martín
|
865eebe7fb
|
fix(aws): configurable boto3 timeouts, 10s connect default (#12774)
|
2026-09-10 08:21:27 +02:00 |
|
 César Arrobaandpedrooot
|
369f852837
|
fix(aws): lead the partition bootstrap regions with the configured region (#12764)
Co-authored-by: pedrooot <pedromarting3@gmail.com>
|
2026-09-09 18:07:22 +02:00 |
|
 César Arrobaandpedrooot
|
c71f226e5c
|
fix(image): honour TRIVY_CACHE_DIR when it is set (#12773)
Co-authored-by: pedrooot <pedromarting3@gmail.com>
|
2026-09-09 17:00:50 +02:00 |
|
Pedro Martín
|
bbf5e1fa9f
|
fix(tests): isolate secretsmanager policy test (#12782)
|
2026-09-09 16:58:35 +02:00 |
|
 Pedro Martínandalejandrobailo
|
1edcf6e5de
|
fix(jira): fix connection check timeout (#12742)
Co-authored-by: alejandrobailo <alejandrobailo94@gmail.com>
|
2026-09-04 15:51:09 +02:00 |
|
Pedro Martín
|
8f35fff255
|
fix(compliance): remove duplicate ids and stale check refs (#12717)
|
2026-09-03 13:39:12 +02:00 |
|
Pedro Martín
|
ab51d09543
|
fix(tests): isolate mock class attrs leaking across tests (#12728)
|
2026-09-03 12:20:33 +02:00 |
|
Pedro Martín
|
9621bdfb9c
|
fix(tests): isolate provider mock in agentcore passrole (#12724)
|
2026-09-03 10:15:49 +02:00 |
|
Jonathan Nguyen
|
86e4408f29
|
feat(ecr): assess enhanced scanning on registries holding repositories (#12660)
|
2026-09-02 08:53:52 +02:00 |
|
Jonathan Nguyen
|
ae43d21efb
|
fix(sagemaker): read DirectInternetAccess instead of RootAccess on notebook instances (#12659)
|
2026-09-01 18:22:41 +02:00 |
|
Pedro Martín
|
7c84822fa3
|
fix(image): skip non-image OCI artifacts in registry scan (#12695)
|
2026-09-01 17:18:47 +02:00 |
|
Daniel Barranquero
|
51c5fa7168
|
fix(checks): report MANUAL instead of FAIL on permission and data-availability errors (#12645)
|
2026-09-01 17:16:56 +02:00 |
|
Jonathan Nguyen
|
e9121f5f1a
|
feat(cloudwatch): add agentcore log group data protection policy check (#12662)
|
2026-09-01 17:04:16 +02:00 |
|
Jonathan Nguyen
|
821fe43efd
|
feat(iam): scope AgentCore PassRole and workload token grants, and flag unbound service trust (#12664)
|
2026-09-01 17:02:05 +02:00 |
|
Jonathan Nguyen
|
9ffbb4b758
|
fix(ecr): read each registry scanning rule's frequency instead of assuming scan on push (#12560)
|
2026-09-01 16:53:58 +02:00 |
|
Jonathan Nguyen
|
9c5285adc3
|
fix(cloudwatch): skip metric filters whose log group was not retrieved (#12561)
|
2026-09-01 14:00:41 +02:00 |
|
Pedro Martín
|
f295d290dd
|
feat(image): private network allowlist for SSRF guard (#12678)
|
2026-09-01 14:00:04 +02:00 |
|
Jonathan Nguyen
|
e5df95c259
|
feat(eks): assess Kubernetes network policy enforcement in the Amazon VPC CNI add-on (#12661)
|
2026-09-01 13:40:45 +02:00 |
|
Jonathan Nguyen
|
b6a8af3c54
|
feat(guardduty): assess unified Runtime Monitoring and AI Protection (#12564)
|
2026-09-01 13:18:57 +02:00 |
|
 Pedro MartínandLydia Vilchez
|
fb7064401b
|
feat(compliance): add CIS 1.4 google workspace compliance (#12513)
Co-authored-by: Lydia Vilchez <lydiavilchezlopez@gmail.com>
|
2026-09-01 09:35:39 +02:00 |
|
 Pedro MartínandDavid
|
6422178b76
|
feat(sdk): AWS partition selection via PROWLER_AWS_PARTITION (#12680)
Co-authored-by: David <david.copo@gmail.com>
|
2026-08-31 18:13:30 +02:00 |
|
 ye11oc4tandDaniel Barranquero
|
0326844527
|
fix(github): paginate repository discovery (#12460)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-31 10:15:29 +02:00 |
|
Utkarsh Batham
|
e21946874f
|
feat(memorydb): add memorydb_cluster_in_transit_encryption_enabled check (#12246)
|
2026-08-28 14:03:10 +02:00 |
|
 SejalandDaniel Barranquero
|
2cae2058e9
|
feat(aws): add elasticbeanstalk_environment_no_secrets_in_configuration check (#12378)
Signed-off-by: unknown <sej1306kook@gmail.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-28 13:54:23 +02:00 |
|
 Daniel BarranqueroandJosema Camacho
|
c88f745038
|
feat(jira): return the created issue, sanitize labels and add bulk status lookup (#12539)
Co-authored-by: Josema Camacho <josema@prowler.com>
|
2026-08-28 13:47:12 +02:00 |
|
 
|
2877c3d6c0
|
fix(slack): handle scans that produce no findings (#12229)
Co-authored-by: Juhef <117518034+juheff@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-27 14:03:33 +02:00 |
|
 
|
ee64c17108
|
fix(kubernetes): return empty list when resource gather fails (#12225)
Co-authored-by: Juhef <117518034+juheff@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-27 13:55:46 +02:00 |
|
 Muhammad Ibrahimandpedrooot
|
301edea7ce
|
feat(compliance): add Cyber Essentials 3.3 for Azure (#11588)
Co-authored-by: pedrooot <pedromarting3@gmail.com>
|
2026-08-27 13:31:18 +02:00 |
|
 
|
c89d900aae
|
fix(iac): raise typed exceptions instead of sys.exit on provider failures (#12227)
Co-authored-by: Juhef <117518034+juheff@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-27 12:15:50 +02:00 |
|
Hugo Pereira Brito
|
4cfb4eeb96
|
fix(sdk): use system trust store for push-to-cloud (#12485)
|
2026-08-27 11:07:14 +01:00 |
|
 Pedro Martínandalejandrobailo
|
f19478f2f6
|
fix(compliance): discover universal frameworks from entry point (#12536)
Co-authored-by: alejandrobailo <alejandrobailo94@gmail.com>
|
2026-08-27 09:17:39 +02:00 |
|
 Chethas DileepandDaniel Barranquero
|
2f11b16299
|
feat(github): add repository_default_workflow_permissions_read_only check (#12143)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-27 09:00:42 +02:00 |
|
 Chethas DileepandDaniel Barranquero
|
2721d42594
|
feat(github): add organization_actions_pull_request_approval_disabled check (#12394)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-27 08:25:32 +02:00 |
|
Daniel Barranquero
|
bd1956446d
|
fix(alibabacloud): read OSS bucket sub-resource configs via the SDK execute path (#12546)
|
2026-08-26 16:41:13 +02:00 |
|
 Chethas DileepandDaniel Barranquero
|
9dc53ffc60
|
feat(github): add organization_default_workflow_permissions_read_only check (#12122)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-26 12:21:49 +02:00 |
|
 Alex ChenandDaniel Barranquero
|
301ca50541
|
feat(alibabacloud): add oss_bucket_server_side_encryption_enabled check (#11981)
Signed-off-by: Alex Chen <l46983284@gmail.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-25 17:41:52 +02:00 |
|
 abidedavanaandDaniel Barranquero
|
411d112165
|
feat(alibabacloud): add oss_bucket_versioning_enabled check (#11913)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-25 13:03:25 +02:00 |
|
 Gabrielandpedrooot
|
8a4cc8780d
|
feat(kubernetes): include cluster name in compliance reports (#12506)
Co-authored-by: pedrooot <pedromarting3@gmail.com>
|
2026-08-25 11:08:04 +02:00 |
|
  
|
9898cf7364
|
feat(m365): add defender_domain_dmarc_records_published check (#11936)
Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
Co-authored-by: hdy2001 <56308320+hdy2001@users.noreply.github.com>
|
2026-08-24 16:49:36 +02:00 |
|
 
|
83d8cfa829
|
fix(aws): treat security groups on Batch compute environments as used (#12458)
Co-authored-by: hackertwinten <193916571+hackertwinten@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-24 16:18:56 +02:00 |
|