| Scanning & coverage |
| Cloud infrastructure posture scanningAWS, Azure, Google Cloud, Oracle Cloud, Alibaba Cloud, OpenStack, Cloudflare, Vercel | | | |
| Infrastructure as CodeTerraform, CloudFormation, Helm, Kubernetes manifests, GitHub Actions | | | |
| SaaS posture scanningMicrosoft 365, Google Workspace, GitHub, MongoDB Atlas | | | |
| Kubernetes posture scanningEKS, AKS, GKE, local or remote clusters and AWS ECS | | | |
| Container image scanning | | | |
| All public compliance frameworks | | | |
| Real-time event-driven detection (soon) | | | |
| Onboarding & scans |
| AWS Organizations, Azure Management Groups, GCP OrganizationsDiscover and onboard every account at once | | | |
| Scheduled scansDaily, weekly, bi-weekly or monthly, at the time you choose | | | |
| Enable or disable checks and services, custom controls | | | |
| Finding enrichment and scan throttling | | | |
| Partial scans and rescans of a single finding | | | |
| Import findings from the Prowler CLI and the Prowler Cloud APIUse the CLI as a local agent for Prowler Cloud | | | |
| Prioritize & fix |
| Prowler ThreatScore0–100 risk prioritization and executive reporting | | | |
| Attack path for AWSBasic attack path analysis | | | |
| Full end-to-end attack path graphOption to show only impacted resources | | | |
| Lighthouse AI side chat and skillsFix, Triage Decision, Systemic Scope, Compliance Impact | | | |
| Prowler Autonomous FixerGuided remediation for cloud misconfigurations | | | |
| External threat validation with Censys | | | |
| Triage & collaboration |
| Simple and advanced MutelistIndividual and bulk muting with justifications | | | |
| Finding notes and status lifecycleOpen, Under review, Remediating, Risk Accepted, False Positive. The last two mute findings automatically | | | |
| Record manual findings as PASS with evidence | | | |
| Email and Slack alerts | | | |
| Jira integrationSend a group of related findings to one ticket | | | |
| Custom compliance watchlistsGrouped by provider or by provider type | | | |
| NATO D32 compliance framework for AWS, Azure and GCP | | | |
| Microsoft Power BI compliance dashboards | | | |
| Platform, API & AI agents |
| Dashboards, resource inventory, reports and exportsCSV, JSON-OCSF, HTML and compliance CSV | | | |
| API keys, Prowler SDK, GitHub Action and SARIF | | | |
| AWS Security Hub integration | | | |
| Prowler Cloud API and remote MCP ServerMCP tools for all premium features. Connect any agent with an API key | | | |
| Prowler Private RegistryPrivate artifacts: custom controls, cloud providers and compliance frameworks | | | |
| SAML SSO for multiple domainsOkta, Entra ID and more | | | |
| OAuth social login with Google and GitHub | | | |
| AWS Marketplace subscription and private contracts | | | |
| Private Cloud only |
| Deploy in your own VPC or data centerData residency of your choice, including air-gapped environments | | | |
| Prowler Local RegistryCustom controls, cloud providers and compliance frameworks, kept inside your environment | | | |
| VMware VCF controls and compliance | | | |
| AWS Security Lake (Parquet) and custom SIEM integration | | | |
| Security & support |
| SOC 2 Type 2, auto-scaling, multi-tenancy, backup and DDoS protection | | | |
| Enterprise supportOpen source includes community support | | | |
| White glove onboarding, Technical Account Manager, dedicated CSM | | | |