Amazon Inspector launches code security to shift security left in development
News
AWS has launched Amazon Inspector code security capabilities, a new feature designed to help developers identify and prioritize security vulnerabilities earlier in the development process.
- Provides native integration with GitHub and GitLab
- Offers three core security scanning capabilities:
- Static Application Security Testing (SAST)
- Software Composition Analysis (SCA)
- Infrastructure as Code (IaC) scanning
- Allows scanning during code pushes, pulls, in CI/CD pipelines, and through scheduled scans
- Provides findings in both Amazon Inspector console and source code management platforms
- Available in 10 AWS regions worldwide
This expansion extends Amazon Inspector's existing vulnerability management capabilities from AWS compute resources to application source code and dependencies.
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
Jun 17
2025
2025
Beyond compute: Shifting vulnerability detection left with Amazon Inspector code security capabilities
Feb 14
2025
2025
Amazon Inspector enhances the security engine for container images scanning
Jan 12
2026
2026
Amazon Inspector adds Java Gradle support and expands ecosystem coverage
Jun 1
2026
2026
Amazon Inspector launches improved agent-based scanning for EC2
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.