Supply-chain scanner for JS projects: catches malicious version ranges in manifests, lockfile IOCs, persistence artifacts, and OSV advisories — with auto-updating IOC data.
Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes security and compliance using Open Policy Agent/Rego