Netflix-Skunkworks / policyuniverse
Parse and Process AWS IAM Policies, Statements, ARNs, and wildcards.
☆427Updated 4 months ago
Related projects ⓘ
Alternatives and complementary repositories for policyuniverse
- CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.☆885Updated 2 years ago
- Aardvark is a multi-account AWS IAM Access Advisor API☆472Updated 2 weeks ago
- AWS IAM linting library☆1,045Updated 3 months ago
- AWS Inventory and Compliance Framework☆223Updated last year
- A command-line tool to get valuable information out of AWS CloudTrail☆773Updated this week
- Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)☆434Updated last year
- Library and CLI tool for analysing CloudFormation templates and check them for security compliance.☆399Updated this week
- Open source application to instantly remediate common security issues through the use of AWS Config☆222Updated 4 years ago
- Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frame…☆224Updated last year
- This repository can be used to generate and evaluate findings detected by Amazon GuardDuty☆341Updated 3 months ago
- Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.☆528Updated 6 months ago
- Discover resources created in an AWS account.☆707Updated 7 months ago
- AWS Organizations Service Control Policies (SCPs) written in HashiCorp Terraform.☆231Updated 3 weeks ago
- Manage AWS Config Rules at scale in AWS multi-account and/or multi-region environment; with fully configurable deployment (RuleSets) and …☆276Updated 4 years ago
- Cloud Conformity Auto Remediate☆154Updated this week
- AWS Config resource schema define the properties and types of AWS Config resource configuration items (CIs). Resource CI schema are used …☆237Updated 5 months ago
- Access Undenied parses AWS AccessDenied CloudTrail events, explains the reasons for them, and offers actionable remediation steps. Open-s…☆259Updated last year
- Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a…☆395Updated last month
- Resource types that can be publicly exposed on AWS☆316Updated 2 years ago
- A project to collate IAM actions, AWS APIs and managed policies from various public sources.☆285Updated this week
- ☆151Updated last year
- The AWS Config Rules Development Kit helps developers set up, author and test custom Config rules. It contains scripts to enable AWS Conf…☆460Updated 2 months ago
- Open source demos, concept and guidance related to the AWS CIS Foundation framework.☆617Updated 4 years ago
- This script automates the process of running the Security Hub multi-account workflow across a group of accounts that are in your control☆271Updated 9 months ago
- Scripts to quickly fix security and compliance issues☆103Updated 11 months ago
- Visualize your aws security groups.☆697Updated 3 weeks ago
- Cloud Custodian policy that logs unused security groups☆139Updated 3 years ago
- AWS Identity and Access Management Visualizer and Anomaly Finder☆287Updated 4 months ago
- AWS CloudSaga - Simulate security events in AWS☆442Updated this week