For the complete documentation index, see llms.txt. This page is also available as Markdown.

Prowler step configuration

Scan configurations with Prowler.

You can scan your configurations and ingest results from Prowler. The default workflow is to add a Prowler step to a Build or Security stage and configure it as described below.

Important notes for running Prowler scans in STO

Root access requirements

For more information

Prowler step settings for STO

Scan

Scan Mode

Scan Configuration

Select the compliance framework to apply when running the scan:

  • Default

  • Hipaa

  • GDPR

  • Exclude Extras

Target

Type

Name

Variant

Workspace

Authentication

Settings for the AWS account to use when running an orchestration scan.

Access ID

Access Token

Access Region

The AWS region of the configuration to scan.

Ingestion file

Log Level

Additional CLI flags

You can use this field to run the prowler scanner with specific command-line arguments. For example, this argument excludes specific checks from a scan:

-excluded-checks s3_bucket_public_access

Fail on Severity

Settings

Additional Configuration

Advanced settings

Last updated

Was this helpful?