Showing 22 of 22 projects
Monitors AWS, GCP, OpenStack, and GitHub for policy changes and insecure configurations, tracking asset changes over time.
An SSH Certificate Authority that runs as an AWS Lambda function for ephemeral, IAM-controlled SSH access.
Automatically generate least-privilege IAM policies for AWS by specifying resource ARNs and access levels.
Automatically generate least-privilege IAM policies for AWS based on resource ARNs and access levels.
A tool for quickly evaluating IAM permissions and identifying security risks in AWS accounts through graph-based analysis.
Pike determines the minimum IAM permissions required to run OpenTofu/Terraform infrastructure code.
An AWS IAM to least privilege Terraform execution framework that analyzes usage patterns and generates right-sized IAM configurations.
Converts AWS IAM policies from JSON format to Terraform aws_iam_policy_document HCL.
A fluent interface generator for AWS IAM policy statements with comprehensive AWS service coverage.
A Perl tool to create consistent EBS snapshots on Amazon EC2 by freezing filesystems and locking databases.
A CLI tool that validates AWS IAM policies in Terraform templates against AWS IAM best practices and custom checks.
IAMbic is version-control for IAM, centralizing and simplifying cloud access and permissions across AWS, Okta, Azure AD, and Google Workspace.
Visualizes AWS IAM and Organizations as a graph using Neo4j to identify security anomalies and privilege escalation paths.
A sample Node.js application demonstrating Amazon Cognito integration with Login with Amazon for user authentication and identity management.
A GitHub Action that securely exports secrets from AWS Secrets Manager to environment variables in GitHub Actions runners.
A web application that generates AWS IAM permissions for Serverless Framework deployments through a user-friendly UI.
A GitHub Action that automatically lints AWS IAM policy documents for security issues and best practices.
A GitHub Action to assume AWS IAM roles and set credentials for subsequent workflow steps.
An oh-my-zsh plugin providing aliases and autocompletion for saml2aws to simplify AWS CLI authentication.
A CDK library that simplifies provisioning strong, least-privilege AWS security policies for S3, KMS, DynamoDB, SQS, and EventBridge.
AWS_MSK_IAM authentication plugin for Broadway Kafka, enabling Elixir applications to connect to Amazon MSK using IAM credentials.
A Terraform module for querying AWS accounts and outputting them in various mappings or as a complete list.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.