🗂️ Navigation

Pulumi CrossGuard

Policy as Code for the Cloud.

Visit Website →

Overview

Pulumi CrossGuard is a policy as code solution that is built into the Pulumi platform. It allows you to define and enforce policies on your infrastructure as code, using familiar programming languages like TypeScript, Python, and Go. CrossGuard helps you to ensure that your infrastructure is secure, compliant, and cost-effective.

✨ Key Features

  • Policy as code in TypeScript, Python, and Go
  • Integration with the Pulumi platform
  • Enforcement of policies before infrastructure changes
  • Real-time feedback in your IDE
  • Pre-built policy packs for common security and compliance standards
  • Part of the Pulumi ecosystem

🎯 Key Differentiators

  • Policy as code in familiar programming languages
  • Deep integration with the Pulumi platform
  • Real-time feedback in the IDE

Unique Value: Allows you to use the same programming languages for your infrastructure and your policies.

🎯 Use Cases (4)

Enforcing security and compliance policies Controlling infrastructure costs Implementing guardrails for infrastructure provisioning Automating infrastructure governance

✅ Best For

  • Ensuring all S3 buckets have encryption enabled
  • Restricting the use of expensive virtual machine types

💡 Check With Vendor

Verify these considerations match your specific requirements:

  • Organizations not using Pulumi
  • Static analysis of Terraform or CloudFormation

🏆 Alternatives

HashiCorp Sentinel Open Policy Agent

Offers a more developer-friendly and integrated experience for Pulumi users than external policy engines.

💻 Platforms

Embedded in the Pulumi platform

🔌 Integrations

Pulumi AWS Azure Google Cloud Kubernetes

🛟 Support Options

  • ✓ Email Support
  • ✓ Live Chat
  • ✓ Dedicated Support (Enterprise tier)

🔒 Compliance & Security

✓ SOC 2 ✓ GDPR ✓ SSO ✓ SOC 2 Type 2

💰 Pricing

Contact for pricing

✓ 14-day free trial

Visit Pulumi CrossGuard Website →