Generate Docker Compose configurations with security hardening: localhost port binding, no-new-privileges, health checks
Generate Kubernetes manifests with PodSecurityContext, NetworkPolicies, and resource limits by default
Scan Docker Compose, Kubernetes, and Terraform files for security misconfigurations and exposed ports
Detect exposed secrets, API keys, passwords, and credentials in code and configuration files