Skip to content

scan: add Azure Key Vault rotation check#40

Closed
weedorflow wants to merge 1 commit intoaanishs:mainfrom
weedorflow:add-azure-keyvault-rotation
Closed

scan: add Azure Key Vault rotation check#40
weedorflow wants to merge 1 commit intoaanishs:mainfrom
weedorflow:add-azure-keyvault-rotation

Conversation

@weedorflow
Copy link
Copy Markdown
Contributor

Summary

  • add the Azure Key Vault rotation scan check to the registry
  • bind the new check to SC-28 in the NIST tool mappings
  • cover the new registry entry and binding with framework tests

Closes #10

@aanishs
Copy link
Copy Markdown
Owner

aanishs commented Mar 30, 2026

Incorporated in ae6dde1 on main (rebased after #41 landed). Thank you @weedorflow!

@aanishs aanishs closed this Mar 30, 2026
aanishs added a commit that referenced this pull request Mar 30, 2026
…kup retention

Incorporates #38, #39, #40 (rebased onto main after #41 landed):
- azure-keyvault-rotation check → SC-28
- container-image-signing check → SI-7
- RDS backup retention threshold 7→35 days, rego-aws-rds-backup-retention → CP-9
- 158 tests (up from 152)

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Add Azure check: Key Vault key rotation policy

2 participants