aws-security-audit
Audit AWS Security Posture
AWS misconfigurations can expose identities, data, and networks without clear prioritization. This skill guides read-only checks and organizes findings by security domain and remediation urgency.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "aws-security-audit" from https://skillstore.io/skills/sickn33-aws-security-audit.md and its manifest at https://skillstore.io/api/skills/sickn33-aws-security-audit/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "aws-security-audit". Check IAM security risks in my AWS account.
Expected outcome:
IAM review: MFA gaps found for 3 users. One root access key is present. Priority: remove root keys, then enforce MFA.
Using "aws-security-audit". Find unencrypted resources in us-east-1.
Expected outcome:
Data protection review: 4 EBS volumes and 1 RDS instance lack encryption. Validate workloads before scheduling encrypted replacements.
Using "aws-security-audit". Summarize findings for a compliance review.
Expected outcome:
Compliance summary: evidence supports several CIS controls. CloudTrail and Config gaps remain. PCI DSS and HIPAA conclusions require additional control testing.
Security Audit
SafeAll 48 static alerts are false positives caused by documented, read-only audit examples, Markdown syntax, JMESPath literals, reference links, and detection indicators. No prompt injection, credential exfiltration, resource mutation, or unsafe dynamic execution was found.
Risk Factors
โ๏ธ External commands (35)
๐ Network access (9)
๐ Filesystem access (2)
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/sickn33-aws-security-audit/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/sickn33-aws-security-audit?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/sickn33-aws-security-audit?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/sickn33-aws-security-audit/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/sickn33-aws-security-audit.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
sickn33. (2026). aws-security-audit security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/sickn33-aws-security-audit/audits/5BibTeX citation
@techreport{sickn33-sickn33-aws-security-audit-2026,
author = {sickn33},
title = {aws-security-audit security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/sickn33-aws-security-audit/audits/5},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "aws-security-audit security audit report (audit version 5)"
version: "unspecified"
type: report
authors:
- name: "sickn33"
date-released: "2026-07-23"
url: "https://skillstore.io/skills/sickn33-aws-security-audit/audits/5"
identifiers:
- type: other
value: "skillstore:sickn33-aws-security-audit:audit:5"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: HighWhat You Can Build
Review account configuration
Run focused checks across IAM, networking, encryption, and logging before a production readiness review.
Triage security exposure
Collect evidence for public access, missing encryption, stale credentials, and monitoring gaps, then prioritize remediation.
Prepare compliance evidence
Map observed AWS settings to selected CIS AWS, PCI DSS, and HIPAA control areas while documenting untested requirements.
Try These Prompts
Review my AWS account with read-only checks. Start with IAM, network exposure, encryption, and logging. Ask before running commands.
Audit AWS profile [profile] in regions [regions]. List missing permissions, evidence, severity, and recommended fixes without changing resources.
Compare findings against CIS AWS Foundations, PCI DSS, and HIPAA. Separate direct evidence from inferred coverage and identify untested controls.
Design a repeatable audit for [accounts]. Use least-privilege roles, regional coverage, evidence retention, scoring, and prioritized remediation tracking.
Best Practices
- Use a dedicated read-only role with the minimum permissions required for each check.
- Confirm the active AWS account, profile, and regions before collecting evidence.
- Validate findings manually and document accepted exceptions before assigning remediation deadlines.
Avoid
- Do not run audits with administrator credentials when a scoped read-only role is available.
- Do not treat a simplified score as proof of compliance or complete security coverage.
- Do not automate remediation from these checks without testing, approvals, and rollback plans.
Frequently Asked Questions
Does this skill change AWS resources?
What credentials are required?
Can it audit multiple AWS accounts?
Does it check every AWS region?
Does the output prove compliance?
How are permission failures handled?
Developer Details
Author
sickn33License
MIT
Skillstore revision
r2
Version notice
The author did not declare a version.
Repository
https://github.com/sickn33/antigravity-awesome-skills/tree/main/skills/security/aws-security-auditRef
86d877f219e2131f05dd5b37c5e329c71c7b8ec4
Maintenance freshness
7/26/2026
Usage
6 downloads ยท 72 views
File structure
๐ SKILL.md