1 item
Private, on-device Terraform security & design review. Your code never leaves your machine. Ferrule reviews Terraform for security and design problems without sending a byte of it anywhere. A deterministic rule engine — 52 rules across AWS, Azure, GCP and Terraform hygiene, every one with a known-bad and a known-good fixture test — finds the issues inside your browser. Optionally, a language model running on your own GPU explains each finding in plain English and suggests what to fix first. Two ways to scan: • A folder on this machine — no token, no account, no network requests at all. • A GitHub repository — with a fine-grained token that has Contents: read-only. What it catches: world-open security groups and firewall rules, wildcard IAM, unencrypted storage and databases, public buckets, missing logging, weak TLS, and expression-hidden problems like a world-open CIDR behind a variable default. Suppress a finding with a # ferrule:ignore comment in your Terraform; suppressed findings are listed, never silently dropped. See what changed since your last scan, and export the report as Markdown or self-contained HTML. Privacy is the design, not a promise. The extension installs with access to exactly one host, api.github.com, used only when you scan a repository. The optional model download asks for Hugging Face access the first time you use it, and the settings page hands that access back. Independent full-tree privacy audits — including the two findings that failed — are published verbatim in the repository. Open source, MIT licensed: github.com/Erya-Labs/Ferrule
Aug 26, 2026
rating_count is the Chrome Web Store ratings count, not a written-review count.
Media assets
Screenshots and videos on the listing.
Has promo video
Whether the listing includes at least one video.
Languages
Declared language locales.
Developer website
Listing exposes a developer website URL.
Contact email
Listing exposes a contact email.
Keyword in name
Case-insensitive substring match in the name.
Keyword in description
Case-insensitive substring match in the description.
Keyword occurrences in description
Count of case-insensitive occurrences in the description.
Category user-count percentile
Share of same-category extensions with fewer users (null if unknown).
These are transparent listing completeness / keyword signals, not a prediction of Chrome Web Store search ranking.