yanilov / control-tags
Scalable integrity framework for ABAC on AWS
☆29Updated last week
Related projects ⓘ
Alternatives and complementary repositories for control-tags
- ☆21Updated last year
- ☆22Updated last year
- A tool that allows downloading S3 directories as ZIP files☆34Updated last year
- Safer AWS SCP deployments via real-time monitoring☆32Updated last year
- ☆32Updated last year
- Tag instances & databases with cron-style stop/start schedules to cut AWS costs. Also schedule EBS, EC2 & RDS backups, plus CloudFormatio…☆35Updated 2 years ago
- A Golang program to rotate AWS & GCP account keys☆65Updated 2 months ago
- Open-source proof-of-concept client for AWS IAM Roles Anywhere☆71Updated 2 years ago
- ☆111Updated last week
- Creates needed resources for federating access between a GCP service account and AWS IAM role.☆28Updated 7 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- AWS SSO Reporter☆54Updated last year
- To clean up your AWS AMIs: First, include AMIs by name or tag. Second, exclude AMIs in use, younger than N days, or the newest N images. …☆33Updated 3 months ago
- ☆47Updated last year
- AWS honey token manager☆84Updated 3 months ago
- Route53 CLI - Get info about your records from the terminal - quickly!☆40Updated 2 years ago
- Crowdsourced list of sensitive IAM Actions☆139Updated 2 weeks ago
- Centralizing AWS CloudWatch log forwarding via EventBridge and Step Functions☆49Updated last year
- A crowdsourced AWS IAM permissions reference.☆89Updated last month
- Force CloudFormation to generate a tree view for any stack☆18Updated 2 years ago
- Expand IAM Actions with Wildcards☆26Updated 2 weeks ago
- Quickly query the AWS IP Ranges☆79Updated this week
- CloudCustodian Rules engine for cloud security and governance, DSL in yaml for policies to query, filter, and take actions on resources☆17Updated last year
- Common Golang Packages for use by the Various Cloud Nuke Tools☆28Updated this week
- Automatically close AWS Accounts when moved to a specific Organizational Unit, such as SuspendedOU or ToBeDeletedOU or BlackHole 😛☆14Updated 2 years ago
- The Amazon Elastic Kubernetes Service (EKS) Creation Engine (ECE) is a Python command-line program created by the Lightspin Office of the…☆40Updated last year
- Run in-process code after your Go-powered Lambda function has returned☆23Updated 2 years ago
- This repository contains the full dataset of AWS IAM data (services, actions, resource types and conditions keys). It's updated on a dail…☆52Updated this week
- prel(iminary) is an application that temporarily assigns Google Cloud IAM Roles and includes an approval process.☆36Updated this week