Skip to content

feat(mongodbatlas): add MongoDB Atlas provider PoC - #8312

Merged
andoniaf merged 43 commits into
masterfrom
PRWLR-7635-create-mongo-atlas-po-c-provider
Sep 9, 2025
Merged

andoniaf merged 43 commits into
masterfrom
PRWLR-7635-create-mongo-atlas-po-c-provider

Conversation

@andoniaf

Copy link
Copy Markdown
Contributor

Context

Added MongoDB Atlas provider to Prowler for security compliance scanning of MongoDB Atlas deployments.

Description

Provider Added: MongoDB Atlas
Authentication Method: HTTP Digest Authentication with API key pairs (public key + private key)

Security Checks Implemented:

Clusters Service (4 checks)

  • clusters_authentication_enabled - Ensure clusters have authentication enabled
  • clusters_backup_enabled - Ensure clusters have backup enabled
  • clusters_encryption_at_rest_enabled - Ensure clusters have encryption at rest enabled
  • clusters_tls_enabled - Ensure clusters have TLS authentication required

Organizations Service (4 checks)

  • organizations_api_access_list_required - Ensure organization requires API access list
  • organizations_mfa_required - Ensure organization requires MFA
  • organizations_security_contact_defined - Ensure organization has security contact defined
  • organizations_service_account_secrets_expiration - Ensure organization has maximum period expiration for service account secrets

Projects Service (2 checks)

  • projects_auditing_enabled - Ensure database auditing is enabled
  • projects_network_access_list_exposed_to_internet - Ensure project network access list is not exposed to internet

Checklist

  • Are there new checks included in this PR? Yes (10 checks)
  • Review if the code is being covered by tests
  • Review if code is being documented following specification
  • Review if backport is needed
  • Review if is needed to change the Readme.md
  • Ensure new entries are added to CHANGELOG.md

License

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.

@andoniaf
andoniaf requested review from a team July 17, 2025 14:59
@github-actions github-actions Bot added documentation output/html Issues/PRs related with the HTML output format labels Jul 17, 2025
@github-actions

github-actions Bot commented Jul 17, 2025 •

Copy link
Copy Markdown
Contributor

✅ All necessary CHANGELOG.md files have been updated. Great job! 🎉

@github-actions

Copy link
Copy Markdown
Contributor

You can check the documentation for this PR here -> Prowler Documentation

@codecov

codecov Bot commented Jul 17, 2025 •

Copy link
Copy Markdown

Codecov Report

❌ Patch coverage is 81.20063% with 119 lines in your changes missing coverage. Please review.
✅ Project coverage is 76.33%. Comparing base (7916425) to head (d28793b).
⚠️ Report is 541 commits behind head on master.

Additional details and impacted files
@@             Coverage Diff             @@
##           master    #8312       +/-   ##
===========================================
- Coverage   88.10%   76.33%   -11.77%     
===========================================
  Files         901       94      -807     
  Lines       28233     5590    -22643     
===========================================
- Hits        24874     4267    -20607     
+ Misses       3359     1323     -2036     
Flag Coverage Δ
prowler 76.33% <81.20%> (-11.77%) ⬇️

Flags with carried forward coverage won't be shown. Click here to find out more.

Components Coverage Δ
prowler 76.33% <81.20%> (-11.77%) ⬇️
api ∅ <ø> (∅)
🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@andoniaf
andoniaf force-pushed the PRWLR-7635-create-mongo-atlas-po-c-provider branch from 5cc2acb to 7f29454 Compare July 17, 2025 15:04
@github-actions

Copy link
Copy Markdown
Contributor

You can check the documentation for this PR here -> Prowler Documentation

@andoniaf
andoniaf marked this pull request as draft July 17, 2025 15:10
@github-actions

Copy link
Copy Markdown
Contributor

You can check the documentation for this PR here -> Prowler Documentation

@github-actions

Copy link
Copy Markdown
Contributor

You can check the documentation for this PR here -> Prowler Documentation

@andoniaf andoniaf changed the title feat(mongodbatlas): add MongoDB Atlas provider with security checks feat(mongodbatlas): add MongoDB Atlas provider PoC Jul 18, 2025
@github-actions

Copy link
Copy Markdown
Contributor

You can check the documentation for this PR here -> Prowler Documentation

Comment thread prowler/providers/mongodbatlas/mongodbatlas_provider.py Outdated
@github-actions github-actions Bot added the github_actions Pull requests that update GitHub Actions code label Sep 4, 2025
@danibarranqueroo danibarranqueroo added the provider/mongodbatlas Issues/PRs related with the Mongo DB Atlas provider label Sep 4, 2025
@andoniaf
andoniaf merged commit 82cf216 into master Sep 9, 2025
14 of 16 checks passed
@andoniaf
andoniaf deleted the PRWLR-7635-create-mongo-atlas-po-c-provider branch September 9, 2025 07:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

compliance Issues/PRs related with the Compliance Frameworks documentation github_actions Pull requests that update GitHub Actions code output/html Issues/PRs related with the HTML output format provider/mongodbatlas Issues/PRs related with the Mongo DB Atlas provider

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants