Cloud Custodian (c7n) Logo

Cloud Custodian (c7n)

0
Free
Updated 11 March 2025
Visit Website

Cloud Custodian, also known as c7n, is a rules engine for managing public cloud accounts and resources. It allows users to define policies to enable a well-managed cloud infrastructure, that's both secure and cost-optimized. It consolidates many of the adhoc scripts organizations have into a lightweight and flexible tool, with unified metrics and reporting. Custodian can be used to manage AWS, Azure, and GCP environments by ensuring real-time compliance to security policies (like encryption and access requirements), tag policies, and cost management via garbage collection of unused resources and off-hours resource management. Custodian also supports running policies on infrastructure as code assets to provide feedback directly on developer workstations or within CI pipelines. Custodian policies are written in simple YAML configuration files that enable users to specify policies on a resource type (EC2, ASG, Redshift, CosmosDB, PubSub Topic) and are constructed from a vocabulary of filters and actions. It integrates with the cloud-native serverless capabilities of each provider to provide for real-time enforcement of policies with built-in provisioning.

FEATURES

SIMILAR TOOLS

Generate Amazon GuardDuty findings related to real AWS resources with multiple tests available.

A tool to find S3 buckets from HTML, JS, and bucket misconfiguration testing

A Python script that lists all main resources of your AWS account, helping you find resources that affect billing and/or security.

Azucar is a multi-threaded plugin-based tool for assessing Azure Cloud security.

Show the history and changes between configuration versions of AWS resources

A multi-threaded AWS security-focused inventory collection tool with comprehensive resource coverage and efficient data collection methods.

Converts the format of various S3 buckets for bug bounty and security testing.

Multi-cloud OSINT tool for enumerating public resources in AWS, Azure, and Google Cloud.

A security toolkit for Amazon S3

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved