Skip to main content

infraguard policy

Manage compliance policies.

Subcommands

list

List all available policies:

infraguard policy list

get

Get details of a specific policy:

infraguard policy get rule:aliyun:ecs-instance-no-public-ip
infraguard policy get pack:aliyun:mlps-level-3-pre-check-compliance-pack

update

Update the policy library:

infraguard policy update

validate

Validate custom policies:

infraguard policy validate my-rule.rego
infraguard policy validate ./policies/ --lang zh

format

Format policy files:

infraguard policy format rule.rego
infraguard policy format rule.rego --write
infraguard policy format rule.rego --diff

clean

Clean user policy directory:

infraguard policy clean              # Interactive mode with confirmation
infraguard policy clean --force # Skip confirmation
infraguard policy clean -f # Short flag

Removes all policies from ~/.infraguard/policies/. Does not affect embedded policies or workspace policies.

For more details, see Managing Policies.