Shipped · DevOps and infrastructure

What bridgecrewio/checkov shipped

The public repository of Checkov · github.com/bridgecrewio/checkov

Written by FoxPlug from public releases; not affiliated with Checkov. An automatic summary of the public release, pull request and commit data of github.com/bridgecrewio/checkov. Checkov did not write it and does not use or endorse FoxPlug. Every line links to the public change it describes.

Get a weekly update like this for your product, free

Or Use it as a GitHub Action

Follow checkov's weekly shipped digest

Week of September 14, 2026

What shipped

Why it matters

This week adds a new security check for Terraform configurations and includes performance and reliability improvements. These changes help users catch infrastructure misconfigurations and ensure Checkov runs correctly in constrained environments.

Changelog entry

Example posts FoxPlug drafted from these changes. Not written or posted by the project.

Post for X

Checkov 3.3.19 is out. New check CKV_AWS_394 detects unconstrained aws_availability_zones data sources in Terraform. Plus improvements to parallelism and secrets handling.

Post for LinkedIn

Checkov 3.3.19 released with CKV_AWS_394, a new Terraform check that identifies aws_availability_zones data sources without zone constraints—a potential security oversight in infrastructure code. This release also brings parallelism upgrades and a fix for secrets detection in frozen environments, improving both performance and reliability.

Weeks with too little public activity are left out rather than filled in. Last updated 2026-09-27.

Is this your repo? Ask us to remove this page.