Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frameworks. AWS Service Control Policies (SCPs) enable control over which AWS Service APIs are allowed at the AWS Account level, ensuring local administrators can't perform prohibited actions in a child account. Prior to aws-allowlister, creating AWS AllowList SCPs was error-prone, involving manual spreadsheet creation and maintenance. aws-allowlister simplifies this by automating the process, generating an AWS SCP policy based on preferred compliance frameworks.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A cloud-native security platform that provides asset inventory, vulnerability management, compliance monitoring, and security posture management across multiple cloud providers.
A tool to fetch all public IP addresses associated with an AWS account
A tool to analyze and audit AWS environments for security issues and misconfigurations.
Gatekeeper is a policy management tool for Kubernetes that provides an extensible, parameterized policy library and native Kubernetes CRDs for instantiating and extending the policy library.
AWS Cloud Security offers security services and compliance tools for securing data and applications on AWS.
A Python script that lists all main resources of your AWS account, helping you find resources that affect billing and/or security.
Weave Scope automatically generates a map of your application for troubleshooting and monitoring Docker & Kubernetes.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.