What's Changed
- feat(query): implements "Beta - Activity Log Alert For Create Policy Assignment Not Configured" by @cx-andre-pereira in #7805
- feat(query): implements "Beta - Activity Log Alert For Delete Policy Assignment Not Configured" by @cx-andre-pereira in #7806
- feat(query): implemented 'ensure critical contacts is configured for organization' query for terraform/gcp by @cx-ricardo-jesus in #7841
- perf(engine): optimize Terraform parser with directory caching and LOC-based memory calculation by @cx-artur-ribeiro in #7864
- feat(query): implements "Beta - Activity Log Alert For Create Or Update Network Security Group Not Configured" by @cx-andre-pereira in #7808
- feat(query): implements "Beta - Activity Log Alert For Delete Network Security Group Not Configured" by @cx-andre-pereira in #7810
- feat(query): implements "Beta - Activity Log Alert For Create or Update Security Solution Not Configured" by @cx-andre-pereira in #7811
- feat(query): implements "Beta - Activity Log Alert For Delete Security Solution Not Configured" by @cx-andre-pereira in #7812
- feat(query): implements "Beta - Activity Log Alert For Create or Update SQL Server Firewall Rule Not Configured" by @cx-andre-pereira in #7813
- feat(query): implements "Beta - Activity Log Alert For Delete SQL Server Firewall Rule Not Configured" by @cx-andre-pereira in #7814
- feat(query): implements "Beta - Activity Log Alert For Create or Update Public IP Address Rule Not Configured" by @cx-andre-pereira in #7819
- chore(ci): add CES CI workflows by @cx-rafael-carvalho in #7869
- feat(query): implements "Beta - Activity Log Alert For Delete Public IP Address Rule Not Configured" by @cx-andre-pereira in #7815
- feat(query): implements "Beta - File Share Without Soft Delete" by @cx-andre-pereira in #7827
- feat(query): implements "Beta - Storage Account Not Using Latest SMB Protocol Version" by @cx-andre-pereira in #7828
- feat(query): implements "Beta - Storage Account Using Unsafe SMB Channel Encryption" by @cx-andre-pereira in #7830
- feat(query): implements "Beta - Blob Storage Without Soft Delete" by @cx-andre-pereira in #7831
- feat(query): implements "Beta - Storage Account With Shared Access Key" by @cx-andre-pereira in #7832
- feat(query): implements "Beta - Containers Without Soft Delete" by @cx-andre-pereira in #7834
- feat(query): implements "Beta - Storage Account With Cross Tenant Replication Enabled" by @cx-andre-pereira in #7835
- feat(query): implements "Beta - Storage Account Without Delete Lock" by @cx-andre-pereira in #7836
- feat(query): implements "Beta - Activity Log Alert For Service Health Not Configured" by @cx-andre-pereira in #7821
- feat(query): implements "Beta - Service Without Resource Logging" by @cx-andre-pereira in #7837
- feat(query): new query "Beta - Databricks Workspace Without CMK" - Terraform/azure by @cx-andre-pereira in #7770
- feat(query): implements "Beta - Logs And Alerts Missing Project Ownership Assignment And Changes" by @cx-andre-pereira in #7804
- feat(query): implements "Beta - Logs And Alerts Missing Audit Configuration Changes" by @cx-andre-pereira in #7801
- feat(query): implements "Beta - Logs And Alerts Missing Custom Role Changes" - Terraform/gcp by @cx-andre-pereira in #7772
- feat(query): implements "Beta - Resource Without Diagnostic Settings" by @cx-andre-pereira in #7793
- feat(query): implements "Beta - Diagnostic Settings Without Appropriate Logging" by @cx-andre-pereira in #7794
- feat(query): implements "Beta - Databricks Diagnostic Logging Unconfigured" - Terraform/azure by @cx-andre-pereira in #7769
- feat(query): implements "Beta - Cloud Asset Inventory Disabled" - Terraform/gcp by @cx-andre-pereira in #7775
- feat(query): implemented query to cover "Ensure Legacy Networks Do Not Exist For Older Project" for terraform/gcp by @cx-ricardo-jesus in #7822
- feat(query): implements "Beta - Backup Vault Without Soft Delete" by @cx-andre-pereira in #7845
- feat(query): implements "Beta - Backup Vault Without Immutability" by @cx-andre-pereira in #7848
- feat(query): implements "Beta - Recovery Services Vault Without Soft Delete" by @cx-andre-pereira in #7849
- feat(query): implemented query that checks if the use of user access administrator is not restricted for terraform/azure by @cx-ricardo-jesus in #7842
- fix(action): bump grype anchore action by @cx-miguel-silva in #7909
- feat(query): implements "Beta - Recovery Services Vault Without Immutability" by @cx-andre-pereira in #7850
- feat(query): implements "Beta - Recovery Services Vault With Public Network Access" by @cx-andre-pereira in #7851
- feat(query): implemented query Beta - Key Vault Purge Protection Is Enabled for terraform/azure and fixed remediation problems by @cx-ricardo-jesus in #7838
- feat(query): implements "Beta - VM Without Managed Disk" by @cx-andre-pereira in #7856
- feat(query): implements "Beta - SQL Database Without Data Encryption" by @cx-andre-pereira in #7858
- docs(queries): update queries catalog by @kicsbot in #7894
- docs(kicsbot): preparing for release 2.1.18 by @kicsbot in #7914
New Contributors
- @cx-rafael-carvalho made their first contribution in #7869
Full Changelog: v2.1.17...v2.1.18